What Is Authorization Policy

What Is Authorization Policy

An authorization policy either grants or excludes permission to a user or user group, acting in one of more roles, to perform an operation on an type of object, for a resource which is scoped by its resource type.

What are the three types of authorization policies?

  • Add-in-only policy. When the add-in-only policy is used, SharePoint checks only the permissions of the add-in principal. …
  • User-only policy. When the user-only policy is used, SharePoint checks only the permissions for the user. …
  • User+add-in policy.

What is the purpose of an authorization?

Authorization is the function of specifying access rights/privileges to resources, which is related to general information security and computer security, and to access control in particular. More formally, “to authorize” is to define an access policy.

Maya Lin-Takahashi
Author

Maya Lin-Takahashi

Maya is a hardware enthusiast who tests and reviews smart home devices, smartphones, wearables, and audio gear. She focuses on practical consumer value and build quality.