ASP.NET Authentication, Authorization, and Security
Daniel Cazzulino, Victor Garcia Aprea, James Greenwood, Chris Hart · Apress eBooks · 2004
T he role of security in an application is related to the need to restrict the ability of a user to access certain resources or to perform certain actions. For example, a web application may offer administrative tools that should be accessible only to authorized users, or it may have information that’s restricted to registered users. (In fact, you’ve already seen this kind of restriction in our Friends Reunion application.) It’s also possible to apply different security-related settings at the web-server level.