Filters and authentication

          Hello.
          To our knowledge, a request for a servlet is followed by an authentication done
          by the web server (for example Base / Form authentication etc.).
          We are interested in using the filtering mechanism (javax.servlet.Filter).
          Our question is: What happens before what when a request is made by a client:
          Filtering and then authentication, or authentication an then filtering
          a) client -> filter -> authentication -> servlet
          or
          b) client -> authentication -> filter -> servlet
          Thanks in advance,
          Ilana and Natalie
          

Hi nikita,
I have delt with the same problem before. As you say, most JSF actions all get posted back to the original page, and the faces servlet internally redirects according to the navigation rules and actions. This can mean the URL seen by the browser does not always correspond to the actual JSP (wrapped by JSF) that produced the content.
Generally adding the "<redirect/>" tag to all your navigation rules (in faces-config.xml) remedies this, so the actions are still posted back to the original page, but then the JSF servlet sends an http-redirect to the browser before invoking the new page. This way, the URL is always in sync, and the security constraints defined in your web descriptor always get invoked properly.
regards,
tony

Similar Messages

  • How to create secutiry filters and users, groups in system 9

    HI,
    Could you please help me how to create security filters and groups, users in system 9. I need it very ugent. i am very much thankful to you.. if you respond immediatly.
    Thanks,
    sudhakar.

    In short here's how I did it in 9.3.1 but there are multiple ways to do it.
    I'm using MSAD external authentication.
    Using EAS right click on database, Edit, Filters. Create your filters.
    Then go to Shared Services.
    Find the MSAD user/group and provision them to the Essbase database that you have your filters on. Access level is "Filter".
    Then go back to EAS and Refresh Security From Shared Services.
    Then go back to Shared Services.
    Navigate to Projects & then your Essbase server. Find your Essbase database and click on it. To the right it'll populate a list of all the users/groups you provisioned to above. Select all of them and click Next.
    Now you should see a drop down at the top showing your filter(s). Click the checkbox(s) next to the users/groups you want to apply that filter to. Click the green checkmark to apply the filter, and repeat for your various filters that you want to apply. Only 1 filter per user/group.
    Then go back to EAS and Refresh Security From Shared Services again.
    Good luck, hope this helps.

  • How do I bind to directory server with SSL and authentication?

    I'm running Lion Server 10.7.3, Open Directory master. In Open Directory/Settings/LDAP, I've checked the box to Enable SSL and selected a (self-signed) certificate. In Policies/Binding, I've checked the box to Enable Authenticated Directory Binding.
    Testing with a client computer on which Snow Leopard has been freshly installed and fully updated, I went to System Prefs/Accounts to bind to the new directory server. The good news is, the binding was successful, and when the client initiates an AFP connection with the server, it uses Kerberos, creating a ticket as expected. (Which doesn't work with Lion clients, alas, but that's a seperate matter.)
    Here are the problems:
    1) It looks like the binding did not use SSL. By which I mean that when I opened Directory Utility and examined the LDAPv3 entry, the SSL checkbox was not checked. (If I then check the box, everything looks fine until I restart the client, after which I have a red dot. So I'm guessing that checking the box does nothing until after restart, and that it breaks the binding.)
    2) I was never prompted to authenticate for the directory binding.
    So I get that literally I'm *enabling* SSL and Authenticated Directory Binding, but it seems like the defaults are to bind without SSL or authentication, and there's no obvious-to-me way to force the binding to use those things. How do I do that?
    What I'd really like to do is *require* SSL and Authenticated Directory Binding. I want this because my belief (correct me if I'm wrong) is that if authentication is required to bind to the server, no one will be able to bind to my server without my permission, and that SSL offers a more secure connection to my server than not-SSL. How do I require these things, or do I not really want to?
    Thank you.

    You cannot connect to databases via Muse at the moment. Please refer: http://forums.adobe.com/message/5090145#5090145
    Cheers,
    Vikas

  • IIR Filtering and response .vi: Butterwort​h filter magnitude response depends on sampling rate -why?

    Hi folks,
    I am not expert in filter design, only someone applying them, so please can someone help me with an explanation?
    I need to filter very low-frequent signals using a buttherwoth filter 2. or 3. order as bandpass 0.1 to 10 Hz .
    Very relevant amplitudes are BELOW 1 Hz, often below 0.5 Hz but there will be as well relevant amplitudes above 5 Hz to be observed.
    This is fixed and prescribed for the application.
    However, the sampling rate of the measurement system is not prescribed. It may be between say between 30 and 2000 Hz. This will depend on whether the same data set is used for analysing higher frequencies up to 1000 Hz of the same measurement or this is not done by the user and he chooses a lower sampling rate to reduce the file sizes, especially when measuring for longer periods of several weeks.
    To compare the 2nd and 3rd order's magnitude response of the filter I used the example IIR Filtering and response .vi:
    I was very astonished when I the found that the magnitude response is significantly influenced by the SAMPLING RATE I tell the signal generator in this example vi.
    Can you please tell me why - and especially why the 3rd order filter will be worse for the low frequency parts below 1 Hz of the signal. I was told by people experienced with filters that the 3rd oder will distort less the amplitudes which is not at all true for my relevant frequencies below 1 Hz.  
    In the attached png you see 4 screenshots for 2 or 3 order and sampling rate 300 or 1000 Hz to show you the varying magnitude responses without opening labview.
    THANK YOU for your ANSWERS!!!
    chris
    Solved!
    Go to Solution.
    Attachments:
    butterworth-filter-differences.png ‏285 KB

    Hello Lynn,
    thanks for the answer. You are right that there are few points "behind" the curve in the graph, see png.
    However, this is the filter response which Labview (2009) provides to me directly out of the "IIR Filter for 1 Channel. vi" in the "filter information" output cluster. Where up to now I do not know how to influence it - apart from adjusting the input parameters "IIR filter specifications". OK, I assume I have to gain more knowledge of this. The curve of the magnitude resonse dies not change when I change the number of samples of the input signal of the signal generator, only wehn I change the sampling rate.
    I used directly the example vi from Labview with the name indicated in my first post "IIR Filtering and Response.vi".
    So I assumed that everybody has it in his/her examples shipped with LV and it is not necessary to post it.
    I just adjusted the size of the diagram of magnitude response to see the curves better as you see in the attached vi.
    So I did no changes to the vital parts of signal generation and filter of the example. The screenshots are like they come from the example when using the option "one waveform" where I as user assume that this which is behind is quality-controlled by NI.
    I was also astonished that the filter magnitude response is different to the one I copied out of graphs 1 year ago - but I unfortunately cannot reconstruct which example I used there...
    Thanks for any further comments
    chris
    Attachments:
    IIR Filtering and Response_CH.vi ‏55 KB
    butterworth2nd_order_bandpass_0p1to10Hz_mag_response.PNG ‏18 KB

  • What's the difference between segment filtering and reduced message type

    Hi gurus,
    What's the difference between segment filtering and reduced message type? It seems they have the same functionality: Reduce the segment while idoc is generated.
    Thanks in advance.

    Hi,
    BD53 is for IDoc Reduction.
    this allows you to create a reduced message based upon a standard message type.If you want see mandatory fields. go to T-coe BD53 and give one standard messege type name and eg: matmas
    there mandatory fields will be in Green color..
    And BD56- This transaction is used to filter out segments of IDocs for combination of sender and receiver. This is usefull in scenarios where a standard IDoc with many segments is used but the receiving partner is only interested in some of the segments
    the table related to this transation is TBD20
      please go through below blog you have an idea abt that,
    http://wiki.sdn.sap.com/wiki/display/ABAP/ReducedMessageTypes
    http://saptotal.com/IDoc%20Segment%20Filtering.html
    regards,
    ganesh.

  • Use of filters and aggregations based on hierarchy nodes in an update rule

    Hello,
    I need to calculate some indicators from a ODS (BW 3.5) that contain raw data to another one that will contain indicators. These figures are the results of the use of filters and aggregations based on hierarchy nodes (for example: all sales accounts under a node).
    In fact, this is typically a query but I want to store these figures, so I need
    I understood I have to use a start routine. I never did that before.
    Could you provide me with easy-to-understand-for-newbies examples of:
    - filtering data based on the value of an infoobject (value must be empty, for example)
    - filtering and aggregation of data based on the appartenance to hierarchy nodes (all sales figures, ....)
    - aggregation of the key figures based on different characteristics after filtering of these
    Well, I am asking a lot ...
    Thank you very much
    Thomas

    Please go through the following link to learn more on aggregates:
    https://www.sdn.sap.com/irj/scn/go/portal/prtroot/docs/library/uuid/e55aaca6-0301-0010-928e-af44060bda32
    Also go through the very detailed documentation:
    https://www.sdn.sap.com/irj/scn/go/portal/prtroot/docs/library/uuid/67efb9bb-0601-0010-f7a2-b582e94bcf8a
    Regards,
    Mahesh

  • Transferring Email Filters and Other Settings to a New BB Device

    I will be upgrading/replacing the BB device of one of my users. He's got a lot of email filters and personal setting preferences (i.e. ring tones, speed dial,etc.) Can I transfer the settings and filters to his new BB?
    I tried transferring it through the BB Desktop Mgr > Device Switch Wizard but it messed up the Messages/Corporate Email. After syncing the device with the BES he got double copy of the emails that are currently in his Inbox.
    Thanks in advance!
    Solved!
    Go to Solution.

    You can do a Backup of the old, and then a selective restore from the backup to the new device...
    DM > Backup/Restore > Advanced.
    Select only those preference databases you desire (i.e., Address Book preferences, Speed Dial, etc.).
    1. If any post helps you please click the below the post(s) that helped you.
    2. Please resolve your thread by marking the post "Solution?" which solved it for you!
    3. Install free BlackBerry Protect today for backups of contacts and data.
    4. Guide to Unlocking your BlackBerry & Unlock Codes
    Join our BBM Channels (Beta)
    BlackBerry Support Forums Channel
    PIN: C0001B7B4   Display/Scan Bar Code
    Knowledge Base Updates
    PIN: C0005A9AA   Display/Scan Bar Code

  • Re : Remove System and Authentication from QaaWS login dialog

    Hello there,
    Hope all is well. I am trying to get rid of OR pre-populate with default values for System ( CMS) and Authentication boxes from QaaWS login dialog. I know you can do it in Desktoplauch and Adminlaunch ( Yes I am using BOXI R2 SP5) ...by modifying/editing web.xml deployment descriptor ....where would you do this for QaaWS login boxes ....DSWS application ?
    BTW, my .SWF O/P doesn't reside in Infoview ans is out of BO environment. Also, I want users to login with there AD login....hence didn't want to embed credetials in XC.
    Thanks in advance,
    Sam
    Edited by: samshaw on Jul 28, 2010 4:10 AM

    Hi David,
    Sorry I appreciate this is an old post, but I seem to be going around in circles.
    I understand how to generate and pass the sessionID into a SWF, and I can see the QaaWSHeader.sessionID element in the QaaWS WISDL, but do you or anyone else know how to pass the session ID back using this element?
    There are no obvious options when in Dashboard Design (Xcelsius) - I tried appending QaaWSHeader.sessionID to the URL call also with no succes (just seems to ignore it).
    Does anyone know how this can be achieved.
    My ultimate objective is a SWF hosted outside of Infoview that can consume and share the one session for multiple QaawS and OpenDoc calls.
    Thanks in advance
    Wilf

  • What is Data filtering and Segment filtering in ALE/IDOCs

    Hi sap gurus
    what is Data filtering and Segment filtering in ALE/IDOCs

    Hi,
    Filtering at the IDoc Level
    Identify the filter object (BD59)
    Modify the distribution model
    Segment Filtering
    specify the segments to be filtered (BD56)
    The Reduced IDoc Type
    Analyze the data.
    Reduce the IDoc type (BD53)
    Thanks and regards.

  • How do I create Outgoing Mail Policie,Outgoing content filters and individual content filters?

    IronPort C160.
    async OS 6.5.3
    Server 1 and server 2 are communicating through ironport.( and also scanning)
    Server 1 we have setup domain abc.lk and yy.abc.lk in same server, this reside on DMZ. same segment ironport is connected,
    Server 2: we have setup separate server int.abc.lk which is resided on internal lan.
    Server 1 and server 2 should have to communicate internally, but server2 should not communicate to outside the world (eg. [email protected])
    How do I create "Outgoing Mail Policies, Outgoing content filters and the individual content filters?
    Note: Now server 1 and server2 are communicating internal and also communicating external ([email protected]), I need server 2 not to communicate external ([email protected]) it should be block and also do not block server 2 communicating to server1
    I have attached diagram also.
    Thanks.
    sumathi.

    /* Style Definitions */
    table.MsoNormalTable
    {mso-style-name:"Table Normal";
    mso-tstyle-rowband-size:0;
    mso-tstyle-colband-size:0;
    mso-style-noshow:yes;
    mso-style-parent:"";
    mso-padding-alt:0cm 5.4pt 0cm 5.4pt;
    mso-para-margin:0cm;
    mso-para-margin-bottom:.0001pt;
    mso-pagination:widow-orphan;
    font-size:10.0pt;
    font-family:"Times New Roman";
    mso-ansi-language:#0400;
    mso-fareast-language:#0400;
    mso-bidi-language:#0400;}
    Hello Sumathi,
    (Thanks for adding a diagram, that helps understanding your situation)
    I think the simplest solution is to create a filter that allows server 2 (based on it's IP) to communicate with the internal domains, and drop the messages when they are targeted to any other domain
    so:
    filter source IP = servers
    condition: message to: is NOT abc.lk or yy.abc.lk
    action: drop message
    hope this helps!
    Steven

  • Why can't i access filters and motion for nested composition

    i expect to be able to treat a nested composition just like a clip and double click it to access the filters and motion tabs. instead i get kicked back to the original composition. not what i would expect from reading the help section on nested compositions.
    thanks!
    (first time forum user -- not sure how to find reply -- send to <Edited out by hosts for your protection> if you wouldn't mind)

    i expect to be able to treat a nested composition just like a clip and double click it to access the filters and motion tabs.
    then you expect wrong! double-clicking an item "opens" that item ... so if you double click a "clip" then it opens into the viewer, but if you double-click a "nest" then it opens into the timeline
    you can access the filters and motion tabs for that "clip" by selecting it in the timeline (single click) and then pressing Enter (or Return), or by dragging it from the timeline and dropping it onto the viewer window.
    ps welcome to the forum, Inga ... if you can handle the complexities of FCP then I'm pretty sure you can figure out this forum!

  • AU filters, and some suggestions for use

    I have just discovered the powerfull AU filters for the tracks, and would like some overall suggestions on their use. I have read on many forums and posts on what each one is, but my question is more on the line of when is enough enough, and can you degrade a file, like an image file, by too many filters?
    Example one: Podcasts. Plain recording of vocal track with no efffect. After the recording, my thought is too apply the AUlowpass to take out the highend and clean up the sound. Then, maybe the AUMatrixReverb to fill it out.
    Then, on the MasterTrack, apply the AUMultiband Compressor to balance the output. Is this something that would be ok?
    Example two: Vocal recording project. Apply AUfilter to the backing instramental track to make it the way you want...
    Record vocals again plain, vanilla, no effects. After the recording, add AUlowpass if needed, maybe AUGraphicEQ to shape the vocals, then do the MasterTrack effect as above.
    I guess I would just like some more suggestions from people in the know on some use of the AU filters and how to do it best.
    Thanks,
    Cory

    First, yes, you can degrade output, because a filter (by definition) changes the signal. However, if you use them carefully, they will enhance the sound. You don't have to worry about signal processing artefacts of too many filters in a row, since the design of the AU filters seems to be quite good. But in the end, your ears have to be the judge: why should you worry about degradation if you like the result?
    About the low pass filter: normally, parametric EQ is used to cut specific frequency bands. E.g., if you have some trouble in the higher frequencies, it is unlikely you need to cut all of it, which is what a low pass filter does. This will make your mix sound dull. A parametric EQ can apply a much more precise and subtle edit, and at different places (most mixes also benefit from cutting the higher bass a little bit). EQ can also be used to boost. E.g., a slight increase around 12kHz can give some "air" to the mix.

  • PS CC and PS CC 2014: Installed 2014 but it lacks all added filters and preferences.

    Now I have three times PS (CC, CC 64 bit) ans 2014. I guess I`ll use 2014. Any way to migrate NIK filters and preferences easily

    Moving this discussion to the Photoshop General Discussion forum.

  • Display Filters and Variable on Excel Broadcast

    Hello,
    How do I show filters and variable used on the excel output format from broadcast? Currently when broadcasting query in excel format only query results show in the excel. How do I make the filters and variable show at the bottom of the excel broadcast output after the results?
    Thank You

    Try with Workbook Display check boxes options. But you won't get them as Footers.

  • Filters and  events

    whats the main difference between the filters and events

    i mean to say that there are 3 methods in filters whihc are init ,doFilter and destroy and in events ,there are 2 methods contextInitialized and context destroyed ...
    when we use the filters ,the init method is called when server is started and the same is true with the events that the contextInitiliazed method is called at the same time. and the doFilter is called along with the service methods of the servlet ..the HttpSessionListener session methods are along with the service methods ...
    so i don find whats the difference between events and filters though the definition says the filters are called before the request,response and filter chain ..and events happens along with the methods of the servlets..
    thnaks and regards.....

Maybe you are looking for

  • HR Self-Service Transactions - error notifications

    In our HR system we are using Administrator Self Service, allowing staff to make changes to HR records for people they manage. In quite a few cases, our central admin team are receiving notifications with subject lines like: Application Error has occ

  • Financial Reports WIndows Service(s) missing?

    I'm trying to install Oracle EPM version 11.1.2.1, and I'm pretty far along, but this seems weird. Everything is installed and configured, but I have no Windows service(s) for FR on the services tier server. Looking at the startup order in the Instal

  • 58 Days and counting and Photo Stream still grayed out in iCloud CP

    58 Days and counting and Photo Stream still grayed out in iCloud CP since problem first discussed with Apple. No help, just reported to software engineers for investigation. Almost two months ago! So much forApples' superior products and customer ser

  • Adding special prices to items query.

    Hi, I'm just wondering if anybody can help me work out how to add special prices to items on a volume basis. say if i sold one item there would be no discount but if i sold 10 then i would automatically want a 5% discount to be given, I've had a look

  • I am trying to download ITune and keep getting message Apple application not found. Error 2

    I am trying to Download ITunes to my PC and keep receiving a message " Apple Application Support not found. Error 2.  The installation will not complete.