In my case, I think we'll keep the parameter to 'false'. I don't know what really happens behind the scene but maybe 'org.apache.openejb.client.EJBObjectHandler._handleBusinessMethodResponse' could be improved by adding a 'ResponseCodes.AUTH_DENIED' case like below :
-- View this message in context: http://tomee-openejb.979440.n4.nabble.com/How-to-share-identity-between-several-TomEE-servers-tp4680280p4680290.html Sent from the TomEE Users mailing list archive at Nabble.com.
