File: glossary.rst

package info (click to toggle)
python-aiohttp-security 0.5.0-3
  • links: PTS, VCS
  • area: main
  • in suites: sid
  • size: 416 kB
  • sloc: python: 1,133; makefile: 193
file content (65 lines) | stat: -rw-r--r-- 1,680 bytes parent folder | download | duplicates (3)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
.. _aiohttp-security-glossary:

==========
 Glossary
==========

.. if you add new entries, keep the alphabetical sorting!

.. glossary::


   aiohttp

      :term:`asyncio` based library for making web servers.


   asyncio

      The library for writing single-threaded concurrent code using
      coroutines, multiplexing I/O access over sockets and other
      resources, running network clients and servers, and other
      related primitives.

      Reference implementation of :pep:`3156`

      https://pypi.python.org/pypi/asyncio/

   authentication

      Actions related to retrieving, storing and removing user's
      :term:`identity`.

      Authenticated user has no access rights, the system even has no
      knowledge is there the user still registered in DB.

      If :class:`~aiohttp.web.Request` has an :term:`identity` it
      means the user has some ID that should be checked by
      :term:`authorization` policy.

   authorization

      Checking actual permissions for identified user along with
      getting :term:`userid`.

   identity

      Session-wide :class:`str` for identifying user.

      Stored in local storage (client-side cookie or server-side storage).

      Use :meth:`~aiohttp_session.remember` for saving *identity* (sign in)
      and :meth:`~aiohttp_session.forget` for dropping it (sign out).

      *identity* is used for getting :term:`userid` and :term:`permission`.

   permission

      Permission required for access to resource.

      Permissions are just strings, and they have no required
      composition: you can name permissions whatever you like.

   userid

       User's ID, most likely his *login* or *email*