In API Gateway, you can use multiple mechanisms to control and manage access to a REST API. For example, using Amazon Cognito user pools, you can maintain a directory of users that have access to your API. Or, using Cognito identity pools, you can integrate with Facebook or Google to provide federated authentication.

