Just a quick follow-up. A permission is required to call Subject.getSubject; in my opinion, the EJB container should not grant that to the executing user code by default (unportable and potentially insecure). -Dan On 6 Nov 00, at 15:14, Rickard Oberg wrote: > > KLM> From my brief reading of JAAS, it doesn't sound flexible in this > regard. > > KLM> That is, the protected asset for me is data, not code, whereas JAAS > > KLM> protects code. Am I understanding this correctly? > > Actually in this case the EJB security model plays role rather than JAAS. > > I guess, in general JAAS Credentials may contain any security related > > info, for example, they might hold information about data access > > rights for the given Subject. But this idea cannot be used with EJB > > server, because unfortunately Subject is not accessible from beans. > > It isn't? What about Subject.getSubject() then? > > /Rickard > > > > > > -- > -------------------------------------------------------------- > To subscribe: [EMAIL PROTECTED] > To unsubscribe: [EMAIL PROTECTED] > Problems?: [EMAIL PROTECTED] > -- -------------------------------------------------------------- To subscribe: [EMAIL PROTECTED] To unsubscribe: [EMAIL PROTECTED] Problems?: [EMAIL PROTECTED]
- [jBoss-User] problem with ctx.getCallerPrincipal() Keith L. Musser
- Re: [jBoss-User] problem with ctx.getCallerPrinci... Oleg Nitz
- Re: [jBoss-User] problem with ctx.getCallerPr... Tom Cook
- Re[2]: [jBoss-User] problem with ctx.getC... Oleg Nitz
- Re[2]: [jBoss-User] problem with ctx.... Tom Cook
- Re: [jBoss-User] problem with ctx.get... Darius Davidavicius
- Re: [jBoss-User] problem with ctx.getCallerPrinci... Keith L. Musser
- Re[2]: [jBoss-User] problem with ctx.getCalle... Oleg Nitz
- Re: Re[2]: [jBoss-User] problem with ctx.... Rickard Oberg
- Re: Re[2]: [jBoss-User] problem with ... Dan OConnor
- Re: Re[2]: [jBoss-User] problem with ... Dan OConnor
- Re: Re[2]: [jBoss-User] problem ... Rickard Oberg
- Re[4]: [jBoss-User] problem with ctx.... Oleg Nitz
- Re: [jBoss-User] problem with ctx.getCallerPrinci... Keith L. Musser
- Re: [jBoss-User] problem with ctx.getCallerPr... Dan OConnor
- RE: [jBoss-User] problem with ctx.getCall... marc fleury
- Re: [jBoss-User] problem with ctx.getCallerPrinci... Keith L. Musser
- Re: [jBoss-User] problem with ctx.getCallerPr... Dan OConnor
- Re: [jBoss-User] problem with ctx.getCallerPrinci... Keith L. Musser
- Re: [jBoss-User] problem with ctx.getCallerPr... Dan OConnor
- Re: [jBoss-User] problem with ctx.getCall... Rickard �berg
