A friendly place for programming greenhorns!
Big Moose Saloon
Register / Login
Win a copy of
Android Security Essentials Live Lessons
this week in the
Where/how to remember the user is authenticated already in J2ee programmatic security
Joined: Sep 09, 2004
Jun 29, 2006 14:13:00
I am doing a programmatic security in
siteA tries to access my siteB(J2ee) with a token appended in the URL.
In siteB, I verify the token. If it is good, I let him to access the requested page.
My question, where and how do I store the info that he was "authenticated" already? Then, if he accesses another page on siteB, I do not need verify the token anymore.
Joined: Mar 22, 2005
Jun 29, 2006 15:42:00
That implies a stateful HTTP connection, i.e. a session in which you can store that information. Barring further information, I'd say you need to set a cookie.
Ping & DNS
- my free Android networking tools app
It is sorta covered in the
JavaRanch Style Guide
subject: Where/how to remember the user is authenticated already in J2ee programmatic security
Authentication using Sun Access Manager 7 and webmethods portal
Container based authentication
Finding Whether a user is logged in or no
WS Security questions
j_security_check 'next' page?
All times are in JavaRanch time: GMT-6 in summer, GMT-7 in winter
| Powered by
Copyright © 1998-2014