I am trying to understand what Principal is and found this answer on SO. From it:
Subject - In a security context, a subject is any entity that req