ietf-nntp Re: Last major open issue (48x return codes)

Ken Murchison ken at oceana.com
Mon Sep 29 06:57:12 PDT 2003


Clive D.W. Feather wrote:

>
> (3) Go further, and recommend 480 for authentication, 483 for privacy, and
> 482 for authorization. [Query 1: what's the difference between
> authentication and authorization?

Authentication is the process of determining that the user is who they 
say they are (via a shared secret, certificate, etc).  Authorization is 
the process of determining what the user can and can't do (access policy 
decisions).

-- 
Kenneth Murchison     Oceana Matrix Ltd.
Software Engineer     21 Princeton Place
716-662-8973 x26      Orchard Park, NY 14127
--PGP Public Key--    http://www.oceana.com/~ken/ksm.pgp




More information about the ietf-nntp mailing list