run as roleDoes the "run-as" role is effective when that request calling the servlet is not authenticated (no security constraint define for the URL) ? Basically I would like the servlet being call by an unauthenticated ...
Thread java.lang.IllegalArgumentException: URI scheme is not "file"
java.lang.IllegalArgumentException: URI scheme is not "file"I am trying to get a basic installation and sample working to help determine if this picketbox is the correct solution going forward for our project. I asked a question last week about the proper installation pr...
Thread What happened to the JBoss XACML source code?
What happened to the JBoss XACML source code?I hope that I am just being stupid. First, look at this: http://www.jboss.org/picketbox. That points you to here: http://community.jboss.org/wiki/PicketBoxOverview. The authorization informatio...
Thread Build issue? jboss-xacml xml-apis dep. not found
Build issue? jboss-xacml xml-apis dep. not foundHello; newbie here. I'm using the project as checked out from here: http://anonsvn.jboss.org/repos/jbossas/projects/security/security-xacml/trunk When I check this out and run mvn clean install ...
JBOSS is ignoring my custom login-modulehi, I have a webb-app, and try to use my own login-module, but the server ignores my login-config entry. I defined my security domain in: jboss.xml as <security-domain>MyApp</s...
Security Group DesignI am trying to determine what constitutes a groups in say LDAP vs what should be stored as domain data in an enterprise database. Here are the particulars. Suppose I am working with an application which ha...
Basic Installation QuestionMy appolgies for such a basic question, but I have not been able to find the answer to this on the PicketBox site. I have a JBossAS 5.1 installation that I wish to install the latest picketbox installation into....
Missing AuditEvent from LogAuditProviderI have LogAuditProvider enabled in jboss-logging.xml to do console logging. I get AuditEvent records for successful authentication of a URL that exists (HTTP.OK 200), but not for URLs that do not exist (HTTP 404). Res...
VFSClassLoaderPolicy.getProtectionDomain()Hi, We are moving from JBoss 4.2.2 to JBoss 6.0 and I have a problem during the boot of my application. I have some Security (Access Denied) error. With JBoss 4.2.2, when a class is loaded it used SecureClass...
How to replace LogAuditProviderHow can I replace or override LogAuditProvider in JBoss? I want to store security audit records in a central database, not in log files spread out between different JBoss instances. How can I configure this in...
custom jaas + picketboxHello, I was reading about picketbox and I'm not sure if it will fit my necessity. I need a custom Login because I need the flexibility to do authentication and authorization in LDAP or BD. So I wonder if I could ha...
JBoss 5 Security Context Being DestroyedHi, I'm currently working with JBoss 5.1 and using a custom login module that also extends the ClientLoginModule. The user presents a certificate and JBoss authenticates the user based off their informat...
Thread Windows 7 and IE8 negotiation toolkit problem
Windows 7 and IE8 negotiation toolkit problemHi All, I've got a working negotiation toolkit setup, at least it is working when using a IE from Windows XP. When I started using IE8 from Windows 7 the application failed when calling the http://jbossserver:...
Thread Integrating JBoss Negotiation with a seam application
Integrating JBoss Negotiation with a seam applicationHi All, I've got the configuration of windows authentication working, used the toolkit to test it (this took some time because of network configuration issues). So now the next step is to get a seam based appl...
Custom login-module and EJBHi all, I'm using JBoss 5.0 GA and I've created a custom login module. The login module is configured in file which is inside an ear in META-INF. This file called security-config.xml looks like this:
<?xml vers...
JBoss Negotiation FailingHi, I have setup the JBoss Negotiation 2.0.3 GA as per the documentation and with following components : Active Directory: Win 2003 SP2 JBoss EAP 4.3 CP06 FireFox 3.5.2 I am able to see the first 2 tests of the N...
Thread How to deploy a custom login module in JBoss AS 5.1
How to deploy a custom login module in JBoss AS 5.1Hi all, My problem is very simple. I use the JBoss LDAPLoginModule and it works i can see it in the log of my LDAP server. But when i try to use my own login module it does'nt work. This is the code o...