Sergey Beryozkin wrote:
Hi Alessio
Just would like to chat about the scope of JBWS-3028 (for jbosscxf-4.0).
First, the integration with PicketBox - how far would we want to go ? At the moment it is
only
AuthenticationManager which is being asked to populate the subject and the actual
authorization is done by CXF interceptor.
I guess what is missing at the moment is a test and may be some code to do with
authorizing an access to EJBs.
Yep, that would be perfect.
2nd part is about adding a test and enhancing the code for hashed
passwords be dealt with...
+1
By the way, did you want me to look into
https://jira.jboss.org/browse/JBWS-2710 at some stage ? I can't recall...
Well, that's not a high priority one currently. Moreover I think the
first thing to do there would be to verify if CXF currently has
something for server side ws-trust at all (didn't followed this for
quite some time).
Anyway, let's talk about other issues for JBossWS CXF 4.0 this week.
Cheers
Alessio
--
Alessio Soldano
Web Service Lead, JBoss