Early-bird Discount
expires in
Register Now

Agenda

Un-Complicate Authorization Maintenance

Un-Complicate Authorization Maintenance

Combined Session
Wednesday, June 05, 2024 17:50—18:10
Location: A 03-04
Watch the video
Log in to download presentations

Every application at some point needs to tackle user permissions. It may be early for some systems or much later in others, but one thing for certain is that as soon as you have more than one user type, the logic will slowly evolve into spaghetti code. And then each time you need to update it will take longer and longer to complete.

In this talk, we’ll proselytize about why decoupling authorization logic is the absolute best solution to the spaghetti code problem and other common authorization pitfalls. We'll look at real-world(ish) permissions implementations using open-source solutions. We'll try things like adding new role-based access controls to an application and evolving it to fine-grained attribute-based access controls. Along the way, we will run into typical blockers and try out ways to solve them. We'll also look at best practices for authorization (role management, policy evolution, the filtering problem, etc.) and when to just use the most obvious solution.

Alex Olivier
Cofounder & CPO
Cerbos
Alex Olivier is the CPO and Co-founder at Cerbos. He has designed enterprise solutions from the ground up as an engineer, consultant, tech lead and product manager, always with an eye on the...
Almost Ready to Join EIC 2024?
Reach out to our team with any remaining questions
Get in touch