This content has been marked as final.
Show 1 reply
-
1. Re: Apache + Tomcat + Jboss + JAAS
juhalindfors May 24, 2003 3:12 AM (in response to damencho)servlet tier must authenticate itself to the ejb tier in a same way you'd authenticate your standalone client to the ejb-tier -- either use the JAAS client callback handler and ClientLoginModule in your tomcat JVM or provide the credentials to your EJB proxies directly via jboss SecurityAssociation class.
Tomcat of course needs to be setup with its own security configuration (as specific to the servlet engine) to authenticate the incoming HTTP requests.