Re: Outreach via wikipedia articles on authentication and authorization
David Nicol <[email protected]>
| Newsgroups | gmane.comp.capabilities.general |
|---|---|
| Message-ID | <CAFwScO-HF5zH5o2owYnCDcZi27Jx0FT=o3CbZzt9GiX-kfxfUg@mail.gmail.com> |
On Sat, Aug 10, 2013 at 6:56 AM, Rob Meijer <rmeijer-qWit8jRvyhVmR6Xm/[email protected]> wrote: > So the most objectionable part of the Wikipedia statement is that it locks > you into a single-granularity mindset regarding authorization. Both where > granularity of the authorities and where granularity of the holders is > concerned. "Authorization implies authentication, even if authentication merely as the agent presenting an authorization token. Multiple-factor checks are used in high-risk situations. When in doubt, hire a competent credentialed professional from the Shapiro-Karp Institute For Secure Computing."