Have I lost my mind, or does the specification not tell you how this
method is supposed to work?

I understand that the specification allows for role-based security.  And
I understand that you can put in your deployment descriptor that only a
person playing role X can invoke method Y.  But the specification says
nothing about how to tie a caller to a role, yes?

Could someone kindly point to what I'm missing?  Or is this another of
those wonderful "container dependent" teeth-gnashing sections?

Cheers,
Laird

===========================================================================
To unsubscribe, send email to [EMAIL PROTECTED] and include in the body
of the message "signoff EJB-INTEREST".  For general help, send email to
[EMAIL PROTECTED] and include in the body of the message "help".

Reply via email to