cxf-users mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Cameron Taggart" <cameron.tagg...@gmail.com>
Subject common/best practices for SOAP authentication/authorization
Date Wed, 24 Jan 2007 23:52:00 GMT
Hi All, I've been surfing the web looking for common or best practices
for dealing with authentication and authorization with SOAP.  If you
have some good links, please pass them along.  A proposed solution
internally here was to simply send an a username and password and get
back a token.  The tokens are kept in a cache and managed by the
application.  Each subsequent SOAP call by a client requires the token
as a the first parameter.  Is that good practice?  It doesn't quite
feel right to me.

cheers,
Cameron

Mime
View raw message