    Authorization check inside ejb

    Pranab Ghosh Newbie

      I need to do FilePermission checking inside an ejb. I am planning to call Subject.doAs(). Inside the run() method of PrivelagedAction object I will call AccessController.checkPermission().

      I have 2 questions
      1. Is this the right approach
      2. Inside the ejb how do I get hold hold of the Subject object which I need to pass to doAs().

      I am using JAAS client side and server side login. I would appreciate any help