aspose file tools*
The moose likes Servlets and the fly likes authentication & authorization in JavaEE Big Moose Saloon
  Search | Java FAQ | Recent Topics | Flagged Topics | Hot Topics | Zero Replies
Register / Login
JavaRanch » Java Forums » Java » Servlets
Bookmark "authentication & authorization in JavaEE" Watch "authentication & authorization in JavaEE" New topic
Author

authentication & authorization in JavaEE

azhar bharat
Ranch Hand

Joined: Jul 17, 2006
Posts: 87
which is the best approach to implement authentication & authorization in JavaEE application?
Ulf Dittmer
Marshal

Joined: Mar 22, 2005
Posts: 41524
    
  53
A good start would be the HTTP-based authentication that's part of the servlet specification. It also supports a role concept that may be sufficient for authorization.

If you want something beefier, has a look at the JAAS API.


Ping & DNS - my free Android networking tools app
azhar bharat
Ranch Hand

Joined: Jul 17, 2006
Posts: 87
can you give some links?
what are the benifits of using JAAS.
Ulf Dittmer
Marshal

Joined: Mar 22, 2005
Posts: 41524
    
  53
The SecurityFaq has a number of links regarding both web app security and JAAS.
Rahul Bhattacharjee
Ranch Hand

Joined: Nov 29, 2005
Posts: 2308
Originally posted by azhar bharat:
which is the best approach to implement authentication & authorization in JavaEE application?


Might help


Rahul Bhattacharjee
LinkedIn - Blog
 
Consider Paul's rocket mass heater.
 
subject: authentication & authorization in JavaEE