Andreas Prohaska wrote:
I bet that most of us use Acegi in some kind of EJB or servlet tier, but I
expect problems when AOP proxied object instances are sent over the wire.
Imagine the case that you want to protect your business model objects with a
MethodInvocationInterceptor. Another problem seems to be Serialization used
during HttpSession replication in the web tier. I doubt that this could
work. Please correct me, if I'm wrong.
I'm not sure what the problem would be. Your services layer beans will
still be located on the original machine (the server). You're client
machine just has a proxy stub, generated from the services layer
interface. The AOP will still take place on the server and never be proxied.
Best regards
Ben
-------------------------------------------------------
SF email is sponsored by - The IT Product Guide
Read honest & candid reviews on hundreds of IT Products from real users.
Discover which products truly live up to the hype. Start reading now.
http://ads.osdn.com/?ad_id=6595&alloc_id=14396&op=click
_______________________________________________
Home: http://acegisecurity.sourceforge.net
Acegisecurity-developer mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/acegisecurity-developer