The Guide
Explain It Like I'm 5Information SecurityAccessability

Authorization

What's authorization and how is it different from authentication?

Purpose

Making sure you're allowed to do what you're trying to do

Example:

Let's take the club example from our previous Authentication concept:

You've proven your identity by showing your ID card but what you didn't know is the bouncer has a guest list and to enter the club you need to be on the list

So unless you're on the list: you won't be able to enter even though you've proven who you are, simply because your identity is not allowed to

Difference From Authentication

Authorization is meant to make sure your identity is allowed to do whatever you're trying to do while authentication just makes sure you are who you claim to be

On this page