Hacktoberfest 2026:メンテナが10月に向けて印を付けた、オープンで初心者向けの issue。 Hacktoberfest の issue を見る

Clarification on authentication vs authorization

オープン
#158 コメント 5 件 リアクション 0 件 担当者 1 名 GitHub で見る

@acoburn がすでに取り組んでいます。

2022年4月25日 から。

評価

この issue はまだ評価されていません。

説明

editorial

As previously mentioned, I found the use of the terms "authorization" and "authentication" in the primer especially, but also in the spec, to be confusing.

@justinwb tried to explain to me the Editors meeting that the use of authorization comes from OAuth, where the idea is that the user authorizes an agent to act on their behalf, and that's fine.

However, Solid has maintained a clean separation between authentication as in "figure out who this user is", and authorization as in "figure out if they are allowed to access this resource". It is important to ensure that this architectural property isn't compromised. For what I've read, it doesn't seem that it has been, but the wording may lead people into thinking that the distinction isn't important, or just confuse them.

Therefore, I believe this should be clearly explained, at least the primer, but perhaps in an introductory note in the spec.

As publishing it on solidproject.org/TR will attract a new readership, I believe this is something that should be done before we publish it there. As we discussed this briefly in the Editors meeting, it seemed to be some agreement around that.

主要言語
Bikeshed
スター
26
フォーク
14
PR マージ指標
30日以内にマージされた PR はありません

環境構築

このプロジェクトには開発コンテナ、Dockerfile、コントリビューションガイドがありません。まず README を読み、一般的な手順ははじめてのコントリビューションガイドを参照してください。

はじめの一歩

  1. issue を最後まで読み、次にプロジェクトのコントリビューションガイドを読みます。
  2. 着手することを issue にコメントします — 二人が同じ作業をするのを防げます。
  3. リポジトリをフォークし、ブランチを切って変更します。
  4. issue 番号を参照したプルリクエストを送ります。

solid/solid-oidc のほかの issue

solid/solid-oidc の issue をすべて見る

新しい issue をメールで受け取る

初心者向けの GitHub issue を短くまとめたダイジェスト。