提交 8925a783 编写于 作者: sinat_25235033's avatar sinat_25235033

add user-role-resource mapping

上级 bdac80c1
......@@ -23,9 +23,10 @@
### <font color="red">Some Conventions</font>
- Based RABC, but only has role-resource, no permission action
- We treat restful api requests as a resource, Resource format like `requestUri===httpMethod`.
- We treat restful requests as a resource, resource format like `requestUri===httpMethod`.
That is the request uri + request method(`post,get,put,delete...`) is considered as a resource as a whole.
`eg: /api/v2/book===get`
- User belong some Role -- Role owns Resource -- User can access the resource
### Use
......
Markdown is supported
0% .
You are about to add 0 people to the discussion. Proceed with caution.
先完成此消息的编辑!
想要评论请 注册