View the original post : 
http://www.jboss.org/index.html?module=bb&op=viewtopic&p=3820285#3820285

Reply to the post : 
http://www.jboss.org/index.html?module=bb&op=posting&mode=reply&p=3820285

Somewhere I've read (maybe EJB-Spec.) that a container facing a run-as-role takes one 
of the users with this role as principal. WebLogic has an appserver specific setting 
"run-as-principal-name" (XDoclet tag: @weblogic.run-as-identity-principal) that allows 
to choose an user with the run-as-role manually if there are several.



So, shouldn't the setting of a run-as-role be enough since all J2EE security-settings 
are role-based!? But SecurityInterceptor throws already an exception if there is no 
user identity supplied and doesn't seem to set the principal to one of the users with 
that role.



Can this this be a feature request or am I wrong?



Regards Adrian & Zumbiehl,

S. Pohl


-------------------------------------------------------
The SF.Net email is sponsored by EclipseCon 2004
Premiere Conference on Open Tools Development and Integration
See the breadth of Eclipse activity. February 3-5 in Anaheim, CA.
http://www.eclipsecon.org/osdn
_______________________________________________
JBoss-user mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/jboss-user

Reply via email to