This tutorial explains how to do role authorization using jax-rs.
I am looking for user level authorization. For example, for certain methods, such as removing or editing or accessing personal user information, only the user that is owner of that information should be able to access those resources. What would be the best way to implement this?
Aucun commentaire:
Enregistrer un commentaire