Users and security
- Authentication
– Making sure a user is who they say they are – ...on every request!
- Authorization
– Making sure a user can only get to information they are supposed to see – Making sure a user can only perform actions they are supposed to