Java Mailing List Archive

http://www.junlu.com/

Google
Google
Mailing List
Home
Forum Home
JBoss - Java Application Server
Tomcat - JSP/Servlet container
Struts - A MVC web framework
iText - An open source PDF Java Library
JDOM - JDOM XML Parser
J2EE - A mailing list for Java(tm) 2 Platform, Enterprise Edition
JSP - A mailing list about Java Server Pages specification and reference
J2EE Pattern - An interest list for Sun Java Center J2EE Pattern Catalog
Servlet - A mailing list for discussion about Sun Microsystem's Java Servlet API Technology
Struts & Hibernate
Subjects
JSP editor plugin for eclipse ?
org apache jasper JasperException: Unable to compile class for JSP
Tomcat: Connection reset by peer: socket write error
Cannot retrieve definition for form bean null
Struts Tiles Tutorial (free Struts training)
Where do I download Tomcat 4 0 6?
Data Access Object (DAO) pattern, example DAO 's
Where to download Tomcat v 4 1 24 from?
Tomcat 5 0 16 Requested resource not available
Oracle Connection Pooling in 3 2 2
Servlet : Session invalidate
Servlet action is currently unavailable
Tomcat/Struts Unicode Encoding/Decoding problems
Tomcat and webapplication specific java library path
Running a Simple JMS Example
Mapping in workers2 properties
org apache jasper JasperException
Cannot find message resources under key org apache struts action
   MESSAGE
problem with html:text bean throwing exception
Cannot find message resources under key org apache struts action MESSAGE
invalid direct reference problem with solution
Tool for jsp debug Try Sysdeo Eclipse Plugin
Tomcat 5 Cannot load JDBC driver class 'null ' SQL state: null
weblogic ejbc
java properties file
Jboss 3 2 3 Coyote Can 't re
Tomcat 5, Apache2 and mod jk2 integration problem
JBoss example problem new to J2EE
url string for connecting jboss to oracle
Value attribute of <html:checkbox
javax servlet ServletException: BeanUtils populate
HTTP Status 404 The requested resource is not available
5 0 18: Windows XP Pro vs Windows 2000
 
Authentication / RolesInterceptor

Authentication / RolesInterceptor

2007-02-08       - By Piero Sartini

 Back
Reply:     1     2     3     4  

Hello List,

i try figuring out how security will work with struts2. I have an EJB3
application - the frontend will be written using s2.

I added the RolesInterceptor to an action:
-- -- code ----
           <interceptor-ref name="roles">
               <param name="allowedRoles">portalUser</param>
           </interceptor-ref>
-- -- code ----

Accessing this action does give me a 403 - thats ok, because I am not logged
in. But how do I login?

My web.xml looks like that:
-- -- code ----
   <login-config>
       <auth-method>FORM</auth-method>
       <realm-name>MyCustomRealm</realm-name>
       <form-login-config>
           <form-login-page>/Login_input.action</form-login-page>
           <form-error-page>/Login_error.action</form-error-page>
       </form-login-config>
    </login-config>
   <security-role>
       <description>registered portal user</description>
       <role-name>portalUser</role-name>
   </security-role>
-- -- code ----

is this correct? Is it even possible to use FORM-based authentication with
struts2? If not, could you please give me a hint how this will work?

Goal is that the user is presented with the login form if he is not
authenticated - if he logged in successfully within that form, the
intercepted action should continue.

Thanks in advance,
  Piero

-- ---- ---- ---- ---- ---- ---- ---- ---- ---- ---- ---- ---- ------
To unsubscribe, e-mail: user-unsubscribe@(protected)
For additional commands, e-mail: user-help@(protected)


©2008 junlu.com - Jax Systems, LLC, U.S.A.