[jboss-user] [Security & JAAS/JBoss] - Help securing 3 webapps

konstandinos do-not-reply at jboss.com
Wed Oct 17 10:43:26 EDT 2007


Hi

I have 3 webapps (all deployed as WARs):
- one is custom-built
- one is JSPWiki
- one is JForum

The custom-built webapp is deployed as ROOT.war, and is thus accessible like so: www.example.com

(note: I am forwarding port 80 to 8080)

The JSPWiki webapp (wiki.war) is accessible at www.example.com/wiki/

The JForum webapp (forum.war) is accessible at www.example.com/forum/

All 3 webapps need to have their access restricted to authorised users. The authentication is to be handled using a single database (using DatabaseServerLoginModule).

So basically once a user has logged in at the root webapp, he needs to be able to access the forum and wiki webapps without having to type in username and password again. And if he tries to navigate to the forum url directly, without having logged in at the root webapp, he needs to be prompted to log in first.

What is the simplest way to do this in JBoss? I am using JBoss AS 4.2.1

Thanks

View the original post : http://www.jboss.com/index.html?module=bb&op=viewtopic&p=4096119#4096119

Reply to the post : http://www.jboss.com/index.html?module=bb&op=posting&mode=reply&p=4096119



More information about the jboss-user mailing list