[security-dev] Use ServiceProviderAuthenticator in Tomcat directly instead of in Jboss ?