Content providers are likely to employ authentication and authorization schemes ( which require the notion of secure identity or securely identifiable attributes) in their APIs to enforce business models that involve paid subscriptions or sensitive data. 内容供应商可能会在自己的API中采用身份验证和授权模式(这需要安全身份或安全确认属性的概念)来强制采用涉及付费订阅或敏感数据的业务模型。
The main method to enforce access control policies is authorization. 实施访问控制策略的主要方法是授权(authorization)。