From what I can see, you really need to provide some handler at the
first instance where the IP origination has to be assumed as the credential. After that,
you may need custom login modules to handle the interaction of this morphed security
context (username, IP cred) and deal with the AD for the group information.
The scenario looks similar to a regular invocation of username/password except that we use
IP origination as the cred. The login modules you write should just use the username to
get hold of the groups from AD.
View the original post :
http://www.jboss.org/index.html?module=bb&op=viewtopic&p=4268977#...
Reply to the post :
http://www.jboss.org/index.html?module=bb&op=posting&mode=reply&a...