File APIs for Java Developers
Manipulate DOC, XLS, PPT, PDF and many others from your application.
The moose likes Tomcat and the fly likes Tomcat Realm Big Moose Saloon
  Search | Java FAQ | Recent Topics | Flagged Topics | Hot Topics | Zero Replies
Register / Login

Win a copy of Head First Android this week in the Android forum!
JavaRanch » Java Forums » Products » Tomcat
Bookmark "Tomcat Realm" Watch "Tomcat Realm" New topic

Tomcat Realm

pavani akella

Joined: Feb 16, 2010
Posts: 3

I am using Realm for authentication on my site.
The problem is it is accepting case insensitive username when authenticating.
i.e, If the user name is Username it is accepting and authenticating username. Is there any solution to this.
Any help is appreciated.

Tom Reilly

Joined: Jun 01, 2010
Posts: 618
Hope this link helps: Tomcat Custom Realm.
Tim Holloway
Saloon Keeper

Joined: Jun 25, 2001
Posts: 16901

I had the exact opposite problem, so I subclassed the JDBC realm to get case-insensitive passwords.

However, the generally accepted paradigm is that user IDs should be case-insensitive and passwords should be case-sensitive. Of course the various Unix-like OS's are case-sensitive on both, but the web is supposed to be more OS-independent.

Some of the standard realms may offer case-sensitivity switches as part of their basic config, so check the one you're using. I only did the subclass because I didn't have that option.

Customer surveys are for companies who didn't pay proper attention to begin with.
I agree. Here's the link:
subject: Tomcat Realm
It's not a secret anymore!