0Pricing
OAuth2 & OpenID Connect Deep Dive · درس

شرح AuthN مقابل AuthZ

ميّزوا بين المصادقة (من أنتم؟) والتفويض (ما الذي يمكنكم فعله؟)، وهما ركيزتا الوصول الآمن.

شرح AuthN مقابل AuthZ درس مجاني في OAuth2 & OpenID Connect Deep Dive على CoddyKit. هذا هو الدرس 1 من أصل 4. يمكنك قراءة الدرس كاملاً أدناه مجاناً — ثم تمرن عليه مباشرة في المتصفح باستخدام محرر أكواد مدمج ومدرس ذكاء اصطناعي متاح 24/7. هذا الدرس جزء من مسار التعلم في OAuth2 & OpenID Connect Deep Dive، وتقدمك يتزامن عبر الويب وتطبيق CoddyKit. تتضمن دورة OAuth2 & OpenID Connect Deep Dive 4 دروس في المجموع.

بعض أجزاء هذا الدرس لم تُترجم بعد وتظهر باللغة الإنجليزية.

Secure Access: The Foundation

Every login and every protected feature runs a security check behind the scenes. It rests on two ideas: authentication and authorization.

AuthN vs AuthZ: The Core

Think of a building: first you prove who you are, then your role decides which rooms you can enter. That's authentication (AuthN) versus authorization (AuthZ).

Authentication: Proving Identity

Authentication verifies that you are who you claim to be — the question "are you really you?" Fail it, and access is denied before anything else happens.

Common AuthN Methods

You hit authentication daily: passwords you know, biometrics like a fingerprint, one-time codes from an app, or digital certificates.

Authorization: Defining Access

Once you're in, authorization decides what you're allowed to do — the question "which resources and actions are you permitted?"

Permissions in Practice

In an online store, a customer browses and buys; an admin can also add products and view reports. Your role and permissions set the boundary.

Analogy: The Exclusive Club

Picture a club: the bouncer checking your ID is authentication; your membership tier deciding if you reach the VIP lounge is authorization.

AuthN Comes Before AuthZ

Order matters: authentication always comes before authorization. You can't decide what someone may do until you know who they are.

The Power of Both

Neither works alone: authentication without authorization knows who you are but not your access; authorization needs an identity to grant anything. Together they're a security barrier.

Test Your Knowledge

Consider a user trying to access a secure document on a server.

Recap: AuthN & AuthZ

Recap: authentication answers "who are you?" and authorization answers "what can you do?" — the bedrock of secure access. Next: how identity management evolved.

الأسئلة الشائعة

هل درس «شرح AuthN مقابل AuthZ» مجاني؟

نعم — نص درس «شرح AuthN مقابل AuthZ» كامل متاح مجاناً هنا على الويب. لتمرينه بشكل تفاعلي (محرر أكواد مدمج ومدرس ذكاء اصطناعي متاح 24/7) وفتح باقي دورة OAuth2 & OpenID Connect Deep Dive، انتقل إلى CoddyKit PRO. تتضمن دورة OAuth2 & OpenID Connect Deep Dive 4 دروس في المجموع.

ماذا ستتعلم في «شرح AuthN مقابل AuthZ»؟

ميّزوا بين المصادقة (من أنتم؟) والتفويض (ما الذي يمكنكم فعله؟)، وهما ركيزتا الوصول الآمن. تتمرن على OAuth2 & OpenID Connect Deep Dive مع أكواد عملية تشغلها مباشرة في المتصفح، ومدرس ذكاء اصطناعي متاح 24/7 يجيب على أسئلتك أثناء عملك.

هل أحتاج إلى خبرة سابقة لأبدأ OAuth2 & OpenID Connect Deep Dive؟

لا تُشترط خبرة سابقة. OAuth2 & OpenID Connect Deep Dive على CoddyKit منظم للمبتدئين حتى المتقدمين، لذا يمكنك البدء من هنا أو من البداية والتقدم بسرعتك الخاصة. هذا هو الدرس 1 من أصل 4.

كم من الوقت يستغرق درس «شرح AuthN مقابل AuthZ»؟

معظم دروس CoddyKit تستغرق حوالي 5–10 دقائق. كل منها موجز وتفاعلي، لذا تحرز تقدماً مستمراً وتستأنف من حيث توقفت عبر الويب والتطبيق.

هل يمكنني كتابة وتشغيل أكواد في درس OAuth2 & OpenID Connect Deep Dive هذا؟

نعم. كل درس في OAuth2 & OpenID Connect Deep Dive يتضمن محرر أكواد مدمج، لذا تكتب وتشغل أكواداً حقيقية مباشرة في متصفحك وتحصل على تعليقات فورية من الذكاء الاصطناعي — بدون إعداد محلي.

جميع الدروس في هذه الدورة

  1. شرح AuthN مقابل AuthZ
  2. تطور إدارة الهوية
  3. مفاهيم ومصطلحات الأمان الأساسية
  4. عوامل المصادقة والمصادقة متعددة العوامل
← العودة إلى OAuth2 & OpenID Connect Deep Dive