The way this needs to be done in both ejb2/ejb3 is that the method permission metadata is
made available for a security aspect to create the permissions from.
View the original post :
http://www.jboss.com/index.html?module=bb&op=viewtopic&p=3991468#...
Reply to the post :
http://www.jboss.com/index.html?module=bb&op=posting&mode=reply&a...