Authorization
What's authorization and how is it different from authentication?
Purpose
Making sure you're allowed to do what you're trying to do
Example:
Let's take the club example from our previous Authentication concept:
You've proven your identity by showing your ID card but what you didn't know is the bouncer has a guest list and to enter the club you need to be on the list
So unless you're on the list: you won't be able to enter even though you've proven who you are, simply because your identity is not allowed to
Difference From Authentication
Authorization is meant to make sure your identity is allowed to do whatever you're trying to do while authentication just makes sure you are who you claim to be