Role Based Access Control
FleetingAuthorizing an action based on the roles assigned to a user. For example, some actions require an administrator role.
— https://docs.microsoft.com/en-us/azure/architecture/multitenant-identity/authorize
Notes pointant ici
- access control
- According to OAuth (blog)
- According to some stackoverflow questions (blog)
- My opinion (blog)
- ory permissions
- Relation Based Access Control
- Resource based access control
- what should I put into those scopes and access tokens claims? (blog)