Authentication and Authorization
Securing Your RPC Handlers with Role-Based Access Control
Introduction
The Role Hierarchy
FORBID < GUEST < USER < IDENTIFIED < ADMINRole Definitions
Role
Description
Typical Use Case
Role Determination
IP-Based Assignment
Configuration
Assigning Roles to Handlers
Example Registrations
Permission Enforcement
Automatic Check
Manual Check (Inside Handler)
Resource Management
Resource Charging
Resource Limits
Unlimited Resources
IP Whitelisting and Blacklisting
Whitelisting Admin IPs
Blacklisting Abusive Clients
Secure Gateway Mode
Architecture
Configuration
Password Authentication (WebSocket)
Configuration
Client Authentication
Example: Multi-Level Permission Handler
Best Practices
✅ DO
❌ DON'T
Security Checklist
Conclusion
Last updated

