Тёмный

Securing Multitenant Databases with Entity Framework Core - Zoran Horvat - NDC London 2021 

NDC Conferences
Подписаться 194 тыс.
Просмотров 2,9 тыс.
50% 1

Entity Framework (and other ORMs) are simplifying correspondence with relational databases, saving us from having to type enormous amounts of code. Still, we should not feel too confident about simplification offered by ORMs - not least relax about security.
In this demonstration, you will see one common pitfall where custom code is delegating all database-related work to Entity Framework, forgetting to constrain queries to only access objects to which authenticated user possesses permission. In the rest of the demonstration, we shall come to one coding pattern which ensures that every call into Entity Framework will always be secure out of the box.

Наука

Опубликовано:

 

22 июн 2021

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 5   
@VoroninPavel
@VoroninPavel 3 года назад
Zoran is very cool speaker. And his Pluralsight courses are great.
@Alyaman_Accounting_System
@Alyaman_Accounting_System 2 года назад
good idea thank you
@concretetoy54
@concretetoy54 3 года назад
User != Tenant
@zoran-horvat
@zoran-horvat 3 года назад
From Wikipedia: A tenant is a group of users who share a common access with specific privileges to the software instance. I believe that demo shown in this talk is following this definition very closely, with multiple users eventually sharing tenancy, as demonstrated closer to the end. I think it would be more precise to say that user IS a tenant, but tenant is not necessarily a user.
@Tanaka-Buchou
@Tanaka-Buchou 21 день назад
​@@zoran-horvat👍👍👍
Далее
Modular Monoliths Are The New Microservices
31:08
Просмотров 23 тыс.
Architecting multitenant solutions on Azure
59:20
Просмотров 14 тыс.
ASP.NET Core Full Course For Beginners
3:43:18
Просмотров 142 тыс.
EF Core Multitenancy For Your SaaS Applications
14:41
Красиво, но телефон жаль
0:32
Просмотров 914 тыс.