If we see the JBoss RestEasy framework they provide annotations for allowing method level access to a role. This will allow us to have better control over API access.
________________________________ From: Nicholas L Gallardo [mailto:[email protected]] Sent: Tuesday, July 14, 2009 8:28 PM To: [email protected] Subject: Re: Using @RolesAllowed for Role Based Access Control Does the web.xml have stanzas for defining user/role relationships? Or would this have to come from some other config? Nicholas Gallardo WebSphere - REST & WebServices Development [email protected] Phone: 512-286-6258 Building: 903 / 5G-016 [cid:[email protected]]Michael Elman <[email protected]> Michael Elman <[email protected]> 07/14/2009 09:55 AM Please respond to [email protected] To [email protected] cc Subject Re: Using @RolesAllowed for Role Based Access Control We have plans to support the security annotations from JSR 250. But we didn't discuss it yet. On Tue, Jul 14, 2009 at 4:58 PM, Jain, Shashank Mohan<[email protected]> wrote: > Do we have support Role Based Access Control for different Restful endpoints. > Regards > Shashank
