作者:爱啊诗的孩子 | 来源:互联网 | 2023-09-25 13:14
IamusingAngularJSwithASP.NETWebApiserverside.Seemstomelikeauthenticationhasnowbecom
I am using AngularJS with ASP.NET Web Api server side. Seems to me like authentication has now become a breeze? Or is this too good to be true?
我在ASP.NET Web Api服务器端使用AngularJS。对我来说,身份验证现在变得轻而易举?或者这太好了,不是真的吗?
So I'm thinking of using the Web Api's "Individual User Accounts" authentication. And I am thinking that is all I need. As long as every request is authenticated and noone can get any data they shouldn't I shouldn't need to do much more right?
所以我正在考虑使用Web Api的“个人用户帐户”身份验证。而我认为这就是我所需要的。只要每个请求都经过身份验证,没有人可以获得任何数据,我就不应该做更多的权利吗?
Or am I missing some key security fundamentals?
或者我错过了一些关键的安全基础知识?
2 个解决方案