Principals.xml with OC4J1013 server for authentication n authorization

Hi
I am using OC4J10.1.3 standalone server.
How to configure server and the web application to authenticate and authorize users and groups that attempt to access a web application. Please provide a solution asap
Thanks
Swathi J

We don't use principals.xml any more and have adopted the use of the JAAS, via our implementation which goes under the moniker of JAZN.
I'd have a peruse through the OC4J Security guide as a good starting point:
http://download.oracle.com/docs/cd/B32110_01/web.1013/b28957/toc.htm
The general J2EE doc library is here:
http://download.oracle.com/docs/cd/B32110_01/web.htm
-steve-

Similar Messages

  • I have multiple SSID, but want users of a single SSID to be redirected to a HTTP or HTTPS URL (LAN SERVER for authentication)

    Hi team,
    I  have multiple SSID, but want users of a single SSID to be redirected to a HTTP or HTTPS URL (LAN SERVER for authentication)
    I am very curious and it is important. I want to see how to achieve this with CISCO WLC !!!

    http://10.229.3.99/login.html?switch_url=https://1.1.1.1/login.html&ap_mac=e8:40:40:ad:cc:80&wlan=MO-GUEST&redirect=/login.html?switch_url=https://1.1.1.1/login.html&ap_mac=e8:40:40:ad:cc:80&wlan=MO-GUEST&redirect=/login.html?switch_url=https://1.1.1.1/login.html&ap_mac=e8:40:40:ad:cc:80&wlan=MO-GUEST&redirect=/login.html?switch_url=https://1.1.1.1/login.html&ap_mac=e8:40:40:ad:cc:80&wlan=MO-GUEST&redirect=/login.html?switch_url=https://1.1.1.1/login.html&ap_mac=e8:40:40:ad:cc:80&wlan=MO-GUEST&redirect=/login.html?switch_url=https://1.1.1.1/login.html&ap_mac=e8:40:40:ad:cc:80&wlan=MO-GUEST&redirect=/login.html?switch_url=https://1.1.1.1/login.html&ap_mac=e8:40:40:ad:cc:80&wlan=MO-GUEST&redirect=/login.html?switch_url=https://1.1.1.1/login.html&ap_mac=e8:40:40:ad:cc:80&wlan=MO-GUEST&redirect=10.229.3.99/login.html?switch_url=https://1.1.1.1/login.html&ap_mac=e8:40:40:ad:cc:80&wlan=MO-GUEST&redirect=www.geo.tv/
    I wanted if someone connects to WLAN "MO-GUEST" automatically the user should be redirected to http://10.229.3.99/login.html and once authenticated by 10.229.3.99 , he/she should be allowed to access anything as normal. [ actually i just want automatic url redirection for the first time for the user of wlan "MO-GUEST"
    waiting expert opinions.

  • I need a request code for offline activation. Because i cannot connect with adobe server for online activation. But I receive "The request code is invalid." by generate answer code.

    I need a request code for offline activation. Because i cannot connect with adobe server for online activation. But I receive "The request code is invalid." by generate answer code.

    Dear Anubha,
    I hope these windows illustrate what I am facing.
    The above window shows the prompt that the software requires activation.
    The version is 8.1.0.
    This next window is the point where I select activation by phone.
    This final window shows that the "response code" is not returned.  I get an
    "Activation Number" instead.
    Steven
    On Tue, Jan 27, 2015 at 10:50 PM, Anubha Goel <[email protected]>

  • Which clients are using my Sun One server for authentication?

    We use Sun One ver. 5.2 .
    Our LDAP clients use it for authentication.
    How can I list which clients recently used the Sun One server to authenticate?
    The reason I need that is because I want to upgrade the Sun One server and I want to notify the clients that I'm about to do it.
    Thanks.

    https://www.redhat.com/archives/fedora-directory-users/2005-September/msg00010.html
    Useful script to extract LDAP based user posixGroup memberships information
    ===
    Assuming you are using posixGroup objectclass and memberUid attribute to
    store your membership information, you may find my shell script useful
    and handy.
    It works on Solaris LDAP Client with "ldapaddent" and "ldaplist"
    commands, and works against FDS, SUN DS or OpenLDAP.
    ===
    Gary

  • Can't create a new account at ePrintCenter - trouble with the server for 2 weeks.

    Hi. I'm trying to create an account at ePrintCenter and all the time getting mesage 'Возникла проблема с сервером. Проблема будет устранена в ближайшее время. Приносим извинения за неудобства.' (A trouble with the server, wait, bla bla bla). When will it be fixed?

    For those who are experiencing ongoing issues with their web services, you can attempt to try the following steps that may help resolve your problems.
    1.) Completely shut down your printer and restart it
    2.) If you have prints that have not printed, log into ePrint Center (or create an account if you do not have one) and then look for your printer status. If printer status is green but you still have pending jobs, delete the pending jobs one at a time (Starting with the oldest first). There may be a print job stuck in the queue that further restricts other jobs from completing.
    a. If option 1 or 2 above still doesn’t work, removing web services and re-adding web services will cause the printer to reattach to the cloud.
    b. Please note that if you attempt option 3, you will get a new eprint email address (and lose your custom one with no ability to get it back) furthermore, you will need to re-add your printer back to your ePC account.
    I am an HP employee

  • Security solution with Identity server for SOX compliance

    Hi all,
    Has anybody used Identity Server as security solution to achieve SOX compliance? i want to know general view, opinions , experiance of ppl while implementing such solution.
    Just a little background of SOX: It is Created by US Congress in the wake of corporate scandals like Enron in 2001 and 2002.it is an attempts to tighten controls over corporate financial reporting and transparency.
    I am basically interested in implementing security solutions using Identity server for SOX compliance. Section 404 of this act deals with internal controls, which essentially requires organizations to provide following facilities -
    1. User Identification, authorization and access
    2. User control of user accounts
    3. Central identification and access rights/permissions management
    4. Violation and security activity report
    Has anybody developed such solution? What are your general experiance, problems , issues etc? Please share your view....

    Just too quick to draw conclusion: See below FAQ
    If you are not in the same AS container, let me know. Jerry
    Copy from J2EE agent FAQ
    Question - Is it possible to install a J2EE 2.1agent and Identity Server on the same instance of the application server ?
    Installing the IS60SP1/IS61 server and J2EE 2.1 policy agent on the sameninstance of Application server is not a supported configuration. We do support the 21 J2EE agent and IS installed on different instances of the application server. So, users can install theJ2EE 2.1 agent on a one instance of the application server and install IS on a different instance of the apps server.

  • Snow Leopard Server with Lion Server for APNS

    Hello Everyone,
    I'm wanting to keep my Snow Leopard Server (Xserve) setup in place its working great, and cant afford to have any down time on the company network. What I would like to do is setup up an additional Mac Mini with Lion server to handel just the APNS. Is this possiable.
    I would be running all of the services, mail, OD, addressbook, caladar, on the Snow leopard server but want to use Lion Server to push out and manage some Lion clients, and iPhone with a second server has anyone done this, can this setup work?
    Thanks!
    Robert

    Hi Robert
    "Can you provide the basics for setup?"
    Apart from making sure DNS is configured correctly - as always - there's not much else you need to know. Server has to be configured as an OD Master. It does work with the default self-signed certificate although Apple do recommend you purchase one from a CA such as Verisign. I mention Verisign because it's trusted by the US Government. Once you've got your push notification certificate from Apple, enable the relevant option in the Server App. From there create the enrolment profile and key in the relevant url in your IOS device. The rest is fairly obvious. If DNS is not properly configured for your network this part probably will fail.
    "Can this all be completed in server admin, or the new server.app?"
    AFAIK Server Admin is not involved with APNS.
    "Did you just bind Lion Server too Snow Leopard Server, connect to another OD, or replica?"
    This was on a publicly accessible server that was its own OD Master. Provided things are configured correctly I can't see why it can't work with an environment that's behind NAT.
    "What do I setup after this?"
    Apart from making sure DNS is configured properly as well as the tip regarding trusted certificates I can't think of anything else? From what I've seen MDM in Lion Server is very good and what's more quick on the devices I tested. I only tested IOS devices and testing was done 'over the air.' You can still use the ICPU assuming you kept a copy of the download?
    HTH?
    Tony

  • XML with MTOM-Attachments for BW 7.X

    Hi all,
    My question is regarding loading XML with MTOM-Attachments into BW 7.X.
    It is possible to load XML-Files with a push via a web service DataSource into BW 7.X. The new NetWeaver-Release 7.1 is capable of handling XML-Files with MTOM-attachments. What I do not understand is if and how the Web Service DataSource and the MTOM capabilities of NetWeaver work together.
    Does the capability of NetWeaver 7.1 enable BW to handle MTOM? If it is possible to use MTOM with BW, do I need Usage Type  PI to bring MTOM attachments into BW?
    I have checked several links regarding MTOM, e.g.
    http://help.sap.com/saphelp_nwpi71/helpdata/en/76/fc9c3d9a864aef8139d70759a499fc/frameset.htm 
    or
    https://www.sdn.sap.com/irj/sdn/index?rid=/webcontent/uuid/fcbc97b6-0a01-0010-6594-f8208ff674f9&language=en
    Unfortunately I could not find an answer to my question there.
    Thanks and Regards,
    Felix

    Thanks Tammy for the quick reply. Apologies for asking this naive question but since these are planned innovations and subject to change - this means we will not get any of the following benefits if we migrate to BW 7.4 from BW 7.02 and use BO4.1 on top of it now. Yes integrated planning is not applicable to our client.
    SAP BW integrated planning
     SAP BW integrated planning and planning application kit support in Design Studio
     Planning on SAP BW unified models in SAP BW 7.4 for Analysis Office, and Design Studio
    Data connectivity  (Planned Innovation)
     Direct data access to SAP BW for Lumira
    User experience
     BW integrated planning for Design Studio support
     Lumira integration with SAP applications

  • Connect with different server for debugging

    hi to all,
    is it possible to connect to a different server for debugging? this is to share the development environment !!
    please advise.

    Hi,
    Thanks for your question
    You can create SharePoint 2013 project in your Visual studio 2013 without installing SharePoint on your local machine.
    Please follow below steps : Go to the server where SharePoint 2013 is installed and follow steps from 1 to 3
    Go to Run and type "regedit"
    Navigate towards HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office
    Right click on 15.0 and click Export. Save the exported file
    Now go to your machine where sharepoint is not installed and follow below steps:
    Now open Registry on your machine
    Import the 15 directory which was exported from SharePoint server
    Open Powershell
    Run this command
    Set-ItemProperty -Path "HKLM:\Software\Microsoft\Shared Tools\web server extensions\15.0\" -Name "Location" -Value "C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\15\"
    Now open visual studio 2013 and you will be able to create SharePoint 2013 project without error.
    I hope this is helpful to you. If this works, Please mark it as Answered.
    Regards,
    Dharmendra Singh (MCPD-EA | MCTS)
    Blog : http://sharepoint-community.net/profile/DharmendraSingh

  • Is it possible to use a 10.9 server for authentication to apple clients without providing a network home?

    We are testing 10.9 server with 2 10.9 clients.  We would like to get away from Network Homes completely, but still provide authentication from our servers.  All users homes need to be on the local Workstations.  So far we have had no success.  Test user accounts that we have created with homes on the 10.9 server login fine.  However, user accounts that we have created with no homes get the infamous shake.  I havent been able to find anything in the logfiles on the server that indicate what the problem might be.  Im thinking this setup may not even be possible.
    ddh

    Firstly not only is this more than possible but it really should be easy.
    Let's pretend the local account on one of your workstation's is 'dwayne' and has a password to match. You'd create a user account using the Server App with the same credentials (username and password). On configured shares add that user account to the share as an ACL (not a POSIX user), apply desired permissions and propagate.
    Alternatively create an account that is not related to the dwayne local account in any way. Let's call it 'user' instead with a password to match. You use that instead to connect to the server.
    Treat every other user in the same way.
    By connect I mean "Connect to Server" from the Go Menu. When using the Go Menu you can either use the server's IP address (eg: 172.16.16.254) or it's FQDN (assuming DNS is set up correctly) or even it's Bonjour name (eg: server.local).
    It really makes no difference whether you create a user with a network home or for services only. It's all about how you connect to the Server. If you've gone for networked homes you could bind client workstations to the server if you wish (although there's no real requirement for you to do so) and providing the required network elements are in place and functioning correctly (we're rmostly talking about DNS here) users with networked accounts will be able to log in and access their home folders on any workstation that's been bound to the mac server. But you could just as easily not bind client workstations and use the same account details to access a properly configured server shares (and additionally the user's network home folder) by selecting "Connect to Server" from the Go Menu instead.

  • Parsing XML with invalid URI for DTD

    When parsing an XML file (with aelfred2) I get the following error:
    Exception in thread "main" gnu.xml.dom.ls.DomLSException: Absolute URL required with null context: CQCGWProtocol.DTD
    at gnu.xml.dom.ls.DomLSParser.doParse(libgcj.so.7)
    at gnu.xml.dom.ls.DomLSParser.parse(libgcj.so.7)
    at gnu.xml.dom.DomDocumentBuilder.parse(libgcj.so.7)
    at CQC.main(CQC.java:44)
    Caused by: java.net.MalformedURLException: Absolute URL required with null context: CQCGWProtocol.DTD
    at java.net.URL.<init>(libgcj.so.7)
    at java.net.URL.<init>(libgcj.so.7)
    at gnu.xml.aelfred2.XmlParser.pushURL(libgcj.so.7)
    at gnu.xml.aelfred2.XmlParser.parseDoctypedecl(libgcj.so.7)
    at gnu.xml.aelfred2.XmlParser.parseProlog(libgcj.so.7)
    at gnu.xml.aelfred2.XmlParser.parseDocument(libgcj.so.7)
    I'm puzzled, as I have disabled validation:
    DocumentBuilderFactory domFactory = DocumentBuilderFactory.newInstance();
    domFactory.setIgnoringComments(true);
    domFactory.setNamespaceAware(false);
    domFactory.setValidating(false);
    My goal is to have the parser ignore the DOCTYPE tag and not try to find the DTD. Can someone suggest how you turn this off - apparently, setting the validation to false is not the right approach.
    I'm running Java 1.4.2 on Fidora Core 5.
    Thanks for suggestions!

    Create an org.xml.sax.EntityResolver and apply it to your parser. The API documentation for the interface has an example of how to write one.
    And no, turning of validation doesn't turn off processing of DTDs because DTDs are for things other than validation. Entity replacement, for example.

  • Help with NGS server Sponsor Authentication

    Hi,
    I am trying to configure the NAC Guest Server (NGS) to allow only certain domain user to have access to create accounts (for example only Administrator group). When i configure the NGS server with RADIUS or Active Directory to authenticate the Sponsors it allows all the domain users to connect. What I need help is with configuring it to only allow Administrator group to have access. If anyone know how to configure the NGS server that way please help. I am running version 2.0 of code.
    thanks

    You might try posting this question on the General Security board instead, as it's not specific to wireless.
    http://forums.cisco.com/eforum/servlet/NetProf?page=netprof&forum=Security&topic=General

  • PROBLEM ON CONNECTING WITH THE SERVER FOR THE FIRST TIME

    Hi all,
    I'm using a upload and view concept using JSP & STRUTS.
    Now i'm able to upload the files.
    The problem is for viewing it.
    In this context what i did is that, the files which are uploaded to the server will be listed in the listbox and one of the file has to be selected to view and the view button is to be clicked.
    the problem is that,
    the client who needs to view the file has to login to our server once and have to access the file
    after that the client is able to view the file.
    we are using windows 2003 server
    netbeans 6.0
    apache tomcat 6.0.14
    struts 2.0
    microsoft excel file (uploading files)
    Open office Excel (uploading files)
    internet explorer( browser)

    hi,
    Im getting PAGE CANNOT BE DISPLAYED page. If i'm trying to acces the file in the server.
    but if i manually login to the server by //xx.xx.xx.xx and by providing password and accessing once, the IE is showing
    the file.
    Please help.

  • IPad with Music Server for Selecting Music

    I have a client that wants to use an iPad around his restaurant. He wants it to be able to connect to the back office windows 7 server that has his music loaded on it.
    The iPad should be able to select playlists, artists or albums.
    What is my best approach for this? What windows software would work best for this type of situation?
    Thanks.

    Download the iPad app 'Remote' - unfortunately although it's an Apple app they haven't iPad'ed it yet. Use iTunes on the Windows machine and use the iPad to connect. Job done.

  • Parsing XML with html tags for style

    I'm using flash to pull in XML data, but I want to use html
    tags to be able to style the text. When I add any html, it treats
    it as a sub-node and ignores the data. Also, line breaks in the xml
    are being converted to double spaced paragraphs? The relevant code
    is basically this:
    if (element.nodeName.toUpperCase() == "TEXT")
    {//add text to text array
    ar_text[s]=element.firstChild.nodeValue;
    textbox1.text = ar_text[0];

    try to use htmlText instead text... like this:
    textbox1.htmlText = ar_text[0]
    adam

Maybe you are looking for