๐Ÿ” Spring Security๊ฐ€ ๋‹ด๋‹นํ•˜๋Š” ๊ฒƒ๋“ค

1. ์ธ์ฆ(Authentication) โ€“ ๋ˆ„๊ตฌ๋ƒ?

๐Ÿ‘‰ ์ด๊ฒŒ ์šฐ๋ฆฌ๊ฐ€ ํ”ํžˆ ๋งํ•˜๋Š” โ€œ๋กœ๊ทธ์ธโ€ ์˜์—ญ


2. ์ธ๊ฐ€(Authorization) โ€“ ๋ญ๊นŒ์ง€ ํ•  ์ˆ˜ ์žˆ๋ƒ?

๋กœ๊ทธ์ธ ์ดํ›„๊ฐ€ ํ•ต์‹ฌ์ž„

/admin/**   โ†’ ADMIN๋งŒ ์ ‘๊ทผ ๊ฐ€๋Šฅ
/user/**    โ†’ USER, ADMIN ๊ฐ€๋Šฅ
/api/posts  โ†’ ๋กœ๊ทธ์ธํ•œ ์‚ฌ๋žŒ๋งŒ ๊ฐ€๋Šฅ

๐Ÿ‘‰ ๋กœ๊ทธ์ธ ์•ˆ ํ–ˆ์–ด๋„ ์ ‘๊ทผ ์ฐจ๋‹จ / ๋กœ๊ทธ์ธ ํ–ˆ์ง€๋งŒ ๊ถŒํ•œ ์—†์œผ๋ฉด ์ฐจ๋‹จ


3. ์š”์ฒญ ํ•„ํ„ฐ๋ง (Filter Chain)

Spring Security์˜ ํ•ต์‹ฌ ๊ตฌ์กฐ์ž„

https://docs.spring.io/spring-security/reference/_images/servlet/architecture/multi-securityfilterchain.png