Susumu, The String parameter of java.util.List getAuthenticationCachePrincipals() is the name of the security domain. This function will show you what principals are currently logged in that domain.
Your post below is useless. What is needed is trace logging of the authentication at the time a user requests a secured resource for the first time. Also, it would be useful to check your application-policy config. cgriffith View the original post : http://www.jboss.com/index.html?module=bb&op=viewtopic&p=3953690#3953690 Reply to the post : http://www.jboss.com/index.html?module=bb&op=posting&mode=reply&p=3953690 Using Tomcat but need to do more? Need to support web services, security? Get stuff done quickly with pre-integrated technology to make your job easier Download IBM WebSphere Application Server v.1.0.1 based on Apache Geronimo http://sel.as-us.falkag.net/sel?cmd=lnk&kid=120709&bid=263057&dat=121642 _______________________________________________ JBoss-user mailing list JBoss-user@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/jboss-user