[jboss-dev-forums] [Design of Security on JBoss] - Re: SecurityContext inherited by threads on the serverside

scott.stark@jboss.org do-not-reply at jboss.com
Tue Jun 17 06:17:55 EDT 2008


It can be wrong if you don't want the ability to create a thread to allow you to capture an identity/credential that can be reused in later calls to impersonate the caller that was in effect when the thread was created.


View the original post : http://www.jboss.com/index.html?module=bb&op=viewtopic&p=4158641#4158641

Reply to the post : http://www.jboss.com/index.html?module=bb&op=posting&mode=reply&p=4158641



More information about the jboss-dev-forums mailing list