Похожие чаты

Hello, i was wondering what is the advantage of using

casbin-auth (RBAC) over a naive implementation ? right now i'm sending a string to each handler and simply compare it to users role

4 ответов

24 просмотра

If it feels too naive then you can use Okta

mohammad- Автор вопроса
сумбула
If it feels too naive then you can use Okta

sorry but this isn't really an answer to my question, okta is just another library like casbin(probably except that casbin is just authorization , not authentication), my question is why would i want to use an authorization library ?

mohammad
sorry but this isn't really an answer to my questi...

Your application might be used by various roles such as admin, super admin, customer, boss etc. Customer shouldn't be able to use apis of admins. To provide this you need to come up with role based authorization. In that case libraries like casbin, okta can help you. If you don't want to use any of them, you can create your own role checker

mohammad- Автор вопроса
сумбула
Your application might be used by various roles su...

thanks again, but still not the answer, i know what role based access control is and why it is used. let me give an example on what i want to know , so instead of authorization , let's say authentication , i can surely implement authentication myself, but sometimes there are some tricky points that i might miss , for example storing password in plain text in database, just a silly example, it's possible that authentication libraries would take care of that now , what problems can a authorization library solve compared to just comparing user role with a string ?

Похожие вопросы

Обсуждают сегодня

Господа, а что сейчас вообще с рынком труда на делфи происходит? Какова ситуация?
Rꙮman Yankꙮvsky
29
А вообще, что может смущать в самой Julia - бы сказал, что нет единого стандартного подхода по многим моментам, поэтому многое выглядит как "хаки" и произвол. Короче говоря, с...
Viktor G.
2
@Benzenoid can you tell me the easiest, and safest way to bu.y HEX now?
Živa Žena
20
This is a question from my wife who make a fortune with memes 😂😂 About the Migration and Tokens: 1. How will the old tokens be migrated to the new $LGCYX network? What is th...
🍿 °anton°
2
30500 за редактор? )
Владимир
47
а через ESC-код ?
Alexey Kulakov
29
What is the Dex situation? Agora team started with the Pnetwork for their dex which helped them both with integration. It’s completed but as you can see from the Pnetwork ann...
Ben
1
Гайс, вопрос для разносторонее развитых: читаю стрим с юарта, нада выделять с него фреймы с определенной структурой, если ли чо готовое, или долбаться с ринг буффером? нада у...
Vitaly
9
Anyone knows where there are some instructions or discort about failed bridge transactions ?
Jochem
21
@lozuk how do I get my phex copies of my ehex from a atomic wallet, to move to my rabby?
Justfrontin 👀
11
Карта сайта