If I understand your point, it's a very important one. How are we going to get SSO unless the COTS apps can get role info from the central auth/auth server??

martin


Donald Ball wrote:


That's an interesting feature/restriction. I guess while I have your
attention :) I'd ask how/if you'd solve this problem using
container-managed security? You've got a webapp which, I dunno, implements
a document management system. The DMS puts documents into several
categories, and various users can add, edit, or remove documents in those
categories, depending on their roles in those categories. Assuming the
categories are dynamic, there's no way to implement this using
container-managed security, is there?

- donald


--------------------------------------------------------------------- To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]









--------------------------------------------------------------------- To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]



Reply via email to