Absrtact: Safety management is an unavoidable problem of website design, and it is also a reusable part of website design. These components need to be identified by different users, checking to see if the user has access to restricted Web pages, a method called Authentication (authentication). Determines what the user can access, which is called authorization (authorization). These two concepts are easy to confuse, so to understand: authentication---who are you? Authorized---I already know who you are, what can you do? Authentication and authorization are part of Web site membership Rights Management, including the creation of new users, user certificate management (including password-protection mechanisms, such as password recovery for users who have forgotten passwords), and role management associated with the account. Built-in rights management provided by MS , we can quickly establish a complete set of Web site's rights management system. The last chapter mainly discusses "Who Are You", and the next chapter focuses on "I already know who you are and what you can Do"
Then this article mainly from the following three to discuss the issue of permissions, in fact, these problems are some phenomena, through these phenomena to see the nature of the back:
1. Users of different roles can see different menu items
2. Each page has its own role settings that can be accessed
3. The boundaries between the roles of one and the other permissions/different roles the user has different action items for the same page
In fact, the three sections above are all about what you can do.
A. Users of different roles can see different menu items
The discussion of this phenomenon assumes that we are familiar with the following knowledge points: The use of navigation Control menu, the format of the site map, and the relationship between the two
The phenomenon is that anonymous or non-administrator users can only see the following menu when they log on: