tomcat-users mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Chris Bruce" ...@chrisbruce.com>
Subject Re: User Authentication
Date Tue, 21 Mar 2000 16:07:11 GMT
Does anyone have documentation for the tomcat-users.xml file?  Maybe a dtd?

What package is SecurityCheck in?


----- Original Message -----
From: "John Coonrod" <jc@thp.org>
To: <tomcat-user@jakarta.apache.org>
Sent: Tuesday, March 21, 2000 7:55 AM
Subject: RE: User Authentication


> Great - now I just need to figure out what it means!
>
> ===== Original Message from tomcat-user@jakarta.apache.org at 3/21/00
10:41
> am
> >>
> >> As far as I have seen, users and roles are read from the static file
> >> "tomcat-users.xml".
>
> Yes - but how does one use this? Is there a way to make the tomcat
webserver
> prompt for a login?
>
> >>
> >> Is there a way to have a servlet or EJB perform user authentication?
>
> What's EJB?
>
> >Yes, take a look at SecurityCheck - you just need to create an
> >interceptor
>
> What's an interceptor?
> In my api, I see SecurityManager.checkPermission as a method, but nothing
> spelled SecurityCheck.
> How would I take a look at SecurityCheck?
>
> >( either by extending SC or using it as a template ).
>
> >A third solution is to use your own authentication scheme, and
> >then you can do it in your servlets.
>
> Yuck. That's what I'm doing now.
> >
> >Costin
>
> ----------------
> Dr. John Coonrod, Vice President, jc@thp.org
> The Hunger Project, 15 East 26th Street, NY, NY 10010 www.thp.org
>
>
> --------------------------------------------------------------------------
> To unsubscribe, email: tomcat-user-unsubscribe@jakarta.apache.org
> For additional commmands, email: tomcat-user-help@jakarta.apache.org
>


Mime
View raw message