<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Authorization on wid's blog</title><link>https://wid-blog.github.io/en/tags/authorization/</link><description>Recent content in Authorization on wid's blog</description><generator>Hugo</generator><language>en</language><lastBuildDate>Fri, 19 Mar 2021 00:00:00 +0000</lastBuildDate><atom:link href="https://wid-blog.github.io/en/tags/authorization/index.xml" rel="self" type="application/rss+xml"/><item><title>A Map of Authentication Methods: From Basic to SSO</title><link>https://wid-blog.github.io/en/posts/tech/security/authentication-overview/</link><pubDate>Fri, 19 Mar 2021 00:00:00 +0000</pubDate><guid>https://wid-blog.github.io/en/posts/tech/security/authentication-overview/</guid><description>There was a time I called JWT an authentication method and said I logged in with OAuth, and the terms kept blurring together. This post lines up Basic, Digest, API Key, Session, Token, OAuth, OIDC, and SSO by two questions: authentication vs authorization, and where the proof of identity lives.</description></item></channel></rss>