JACC is introduced as part of J2EE 1.4. This helps to integrate Pluggable Authorization policy providers to facilitate authorization. This helps in role-based authorization using a JACC compliant security provider. (example: Sun Access Manager, may be Netegrity).
Originally posted by Pradip Bhat: Is it possible to propogate credentials from one EJB container to another container from another vendor if the same plugin is used?
Yes ! The JACC provider may suggest their own solution. If not, you may able to do principal delegation between EJBs (running on different containers) using <user-caller-identity> deployment descriptor option.