jQuery in Action, 3rd edition
The moose likes Servlets and the fly likes Are Beans Safe Big Moose Saloon
  Search | Java FAQ | Recent Topics | Flagged Topics | Hot Topics | Zero Replies
Register / Login
JavaRanch » Java Forums » Java » Servlets
Bookmark "Are Beans Safe" Watch "Are Beans Safe" New topic

Are Beans Safe

Bruno Collins

Joined: Nov 30, 2001
Posts: 19
I am writing an application using JSP, Servlets & Beans (no EJB). One of its first pages is the validation of a user and password. How safe is it to store sensitive information such as passwords, credit card details etc in a bean? Is there anyway that other processes "can get to it". I would imagine scope is important. What guidelines can anyone offer here?
Arun Boraiah
Ranch Hand

Joined: Nov 28, 2001
Posts: 233
As for of security issues servlet/jsp and bean are safe. But it all depends how you use it. Server setting used for deployment, OS in which server running, Ports opened in server etc, Protocol(http ,https)etc

Sharing is learning
It is sorta covered in the JavaRanch Style Guide.
subject: Are Beans Safe
It's not a secret anymore!