[ https://issues.apache.org/jira/browse/OPENEJB-1004?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
David Blevins closed OPENEJB-1004. ---------------------------------- Resolution: Fixed Looks like this one was committed in this revision: http://svn.apache.org/viewvc?rev=768087&view=rev > Web service endpoints securable > ------------------------------- > > Key: OPENEJB-1004 > URL: https://issues.apache.org/jira/browse/OPENEJB-1004 > Project: OpenEJB > Issue Type: Improvement > Components: webservices > Affects Versions: 3.1 > Reporter: Jonathan Gallimore > Assignee: Jean-Louis MONTEIRO > Fix For: 3.1.1 > > Attachments: patch-openejb-1004.txt > > > It does not appear to be possible to secure webservice endpoints at the > moment, therefore EJB session beans exposed as webservices will not work if > they use the @RolesAllowed annotation. > It would be nice to pass the values specified in the <web-service-security> > tag in openejb-jar.xml were passed through to Tomcat/OpenEJB HTTP container, > and to potentially support WS-Security schemes as well. -- This message is automatically generated by JIRA. - You can reply to this email to add a comment to the issue online.