0 Replies Latest reply on Aug 10, 2007 8:01 AM by tdemuth

    Did I understand this correctly?

    tdemuth

      I'm trying to write a first JEE-Applicationclient connecting to JBoss for my diploma thesis. I have read a lot of stuff about how to connect and login into JBoss, but I'm not sure if I got it right:

      When my app-client starts up, it should prompt the User for an username and a password. This Username and password must be checked against the database by using JBoss. The last "by using JBoss" is not so much a requirement, I'm just thinking, it's a good idea.

      So I guess I configure my login-module that way:

      <policy>
       <application-policy name="clientLogin">
       <authentication>
       <login-module code="org.jboss.security.auth.spi.ClientLoginModule" flag="required">
       </login-module>
       <login-module code="org.jboss.security.auth.spi.DatabaseServerLoginModule" flag="required">
       <module-option name="dsJndiName">java:/MySQLDS</module-option>
       </login-module>
       </authentication>
       </application-policy>
      </policy>


      So, first of all: Did I understand the way how to login correctly? The application-code calls a secured EJB-method and the Server runs the configured Login-Process. Via a CallBackHandler specified for ClientLogin, I am able to open a graphical Dialog for getting the User's credentials.
      Second question: How do I specify a CallbackHandler for the ClientLogin-module?

      kind regards
      Tobias