Re: [naming] permissions managment
| From: | Sandro Zic | Date: | Wed, 14 Aug 2002 09:39:24 +0000 |
| Subject: | Re: [naming] permissions managment | ||
| References: | 1 2 3 | Groups: | php.pear.dev |
| Request: | Send a blank email to pear-dev+get-8425@lists.php.net to get a copy of this message | ||
On Mittwoch, 14. August 2002 11:25, Markus Wolff wrote:
> Am Wed, 14 Aug 2002 11:14:23 +0200 schrieb Bertrand Mansion
<bmansion@mamasam.com>:
> > Does this mean we all agree to put this user class into the Auth
> > category ?
>
> This is a tricky one.
>
> What the class can do is:
> - User management (add/edit/delete users)
> - Authorization (user login management)
Take care not to mix up 'authentication' and 'authorization':
Authentication is what you mean with 'user login management' which is
currently performed by the Auth package.
Authorization is equivalent to what you call 'Permission/ACL management'.
And in more detail at http://httpd.apache.org/docs/howto/auth.html:
"Authentication is any process by which you verify that someone is who they
claim they are. This usually involves a username and a password, but can
include any other method of demonstrating identity, such as a smart card,
retina scan, voice recognition, or fingerprints. Authentication is equivalent
to showing your drivers license at the ticket counter at the airport.
Authorization is finding out if the person, once identified, is permitted to
have the resource. This is usually determined by finding out if that person
is a part of a particular group, if that person has paid admission, or has a
particular level of security clearance. Authorization is equivalent to
checking the guest list at an exclusive party, or checking for your ticket
when you go to the opera."
Sandro
> - Permission/ACL management
>
> So the possibilities I see are:
> - User_LiveUser
> - Auth_LiveUser
> - Perm_LiveUser
>
> ...if we want to keep the name LiveUser, that is. On the other hand, I
> am very bad when it comes to naming stuff (I recently officially named a
> web-based version control system "More Time For Pizza (MTFP)" cause I
> thought it would save me time when developing stuff, so I´d have more
> time to, well, eat some Pizza :-)).
>
> Regards,
> Markus
--
Sandro Zic
oc4ware Project Manager
oc4ware - Software 4 Open Communities
http://www.oc4ware.org
oc4 e.V. - Association of Open Communities
http://www.oc4home.org