[
http://jira.jboss.com/jira/browse/JBWS-679?page=comments#action_12406554 ]
Andrei Iltchenko commented on JBWS-679:
---------------------------------------
Jason, Thomas,
Prompted by your setting this request to "Out of Date" I wonder how does solves
the problem of SSO for WS communication now?
Thanks,
Andrei.
Initial implementation of SSO/Security context propogation support
------------------------------------------------------------------
Key: JBWS-679
URL:
http://jira.jboss.com/jira/browse/JBWS-679
Project: JBoss Web Services
Issue Type: Feature Request
Security Level: Public(Everyone can see)
Components: ws-security
Reporter: Jason T. Greene
We should offer the ability to issue and propogate security tokens within web service
requests. This would allow for a service endpoint to propogate the callers identity to any
internal or external web service that it invokes. This should be done in a portable way,
since a destination service can be running on any platform on any location on the
internet.
There are a number of specifications that could achieve this functionality:
WS-Trust
SAML
WS-Security Kerberos Token Profile
WS-Security SAML Token Profile
Alot of this will depend on the new security framework being developerd.
The first release of such functionality could be focused on a pure JBoss environment.
-Jason
--
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators:
http://jira.jboss.com/jira/secure/Administrators.jspa
-
For more information on JIRA, see:
http://www.atlassian.com/software/jira