Security, Thanks Frank, a question on your example

Frank
Thanks again.
Based on what you said, I am trying your example on "Declarative J2EE auth and auth with JAAS." I will start with container managed security and use J2EE auth and J2EE sec. I will still have to figure out how to selectively manage the tables in my app based on roles. But, more about that later.
I have created the tables needed. I wanted to try first with the default LoginModule and not use any custom LoginModules your sample talks about.
I ran the jaastester.java first and I seem to have some success.
(See Log
pr 9, 2007 12:44:39 PM oracle.sample.dbloginmodule.util.JavaLoggerImpl print
INFO: [DBTableLoginModule] DBUser Principal Name: Han Solo
Apr 9, 2007 12:44:39 PM oracle.sample.dbloginmodule.util.JavaLoggerImpl print
INFO: [DBTableLoginModule] DBRole Principal Name: User
Apr 9, 2007 12:44:39 PM oracle.sample.dbloginmodule.util.JavaLoggerImpl print
INFO: [DBTableLoginModule] DBRole Principal Name: Manager
Apr 9, 2007 12:44:39 PM oracle.sample.dbloginmodule.util.JavaLoggerImpl print
INFO: [DBTableLoginModule] DBRole Principal Name: Content Owner
Apr 9, 2007 12:44:39 PM oracle.sample.dbloginmodule.util.JavaLoggerImpl print
INFO: [DBTableLoginModule] Logon Successful = true
Apr 9, 2007 12:44:39 PM oracle.sample.dbloginmodule.util.JavaLoggerImpl print
INFO: [DBTableLoginModule] Subject contains 0 Principals before auth
Apr 9, 2007 12:44:39 PM oracle.sample.dbloginmodule.util.JavaLoggerImpl print
INFO: [DBTableLoginModule] Local LM commit succeeded
Apr 9, 2007 12:44:39 PM oracle.sample.dbloginmodule.util.JavaLoggerImpl print
INFO: [DBTableLoginModule] Subject contains 4 Principals after auth
Sounds good but one problem (See below)
This is my set up
db_schema="SECURITYTESTER"
db_schema_pw="oracle"
I was excited and tried to run authtest.jsp under DLMTest. However, when I entered "Han Solo" the DBLoginModuleTest did not do anything. What could be wrong. Obviously it did not authorize!!!!
Is there something I have to do so that authtest.jsp connects to the right schema?
Thanks
P.S. Is there a good book that explains some basics? Obviously, I am getting mixed up with J2EE Security and ADF BC Security, J2EE Roles and ADF roles etc.
null

hi,
frank,I have make a application which include three page,first doesnot need authenticate,second authorizate to role searchUser,the third grant to editRole,and second,third grant to manager ,these are put into the web.xml.then i create three user search,edit,manager in MYADFBC-jazn-data.xml,then edit file orion-web.xml to map roles like this
<security-role-mapping impliesAll="false" name="searchUser">
<user name="search"></user>
<user name="manager"></user>
</security-role-mapping>
if i login as search ,i can access the second page,if i login as manager,i can access all page. then i deploy dbtableoradatasourceloginmodule
i can login as user sking ,even i add search,manage to application_role for user sking,http error 403 always displayed,but when i add
<security-role-mapping impliesAll="false" name="searchUser">
<user name="SKING"></user>
</security-role-mapping>
to orion-web.xml ,i can login and access the second page,but i have added the content as below to applicatoin.xml which locate in jdev_home\jdev\system\oracle.j2ee10.1.3.40.66\embeded-oc4j\config
<jazn provider="XML">
<property name="role.mapping.dynamic" value="true"/>
<property name="custom.loginmodule.provider" value="true"/>
</jazn>
what's wrong with me ?Why role.mapping.dynamic does not effect? How can i do?
thanks advance
lixinzhu
2007/5/5
Message was edited by:
lixinzhu

Similar Messages

  • HT201363 Say if you have only TWO security questions for your Apple ID, and if you forgot the answers to them, how can you change your security questions?

    Help please, anyone?

    Hello Livi4321,
    Thanks for the question. If you do not remember the answers to your security questions please refer to the following article:
    Apple ID: All about Apple ID security questions
    http://support.apple.com/kb/HT5665
    What should I do if I don't remember the answers to my Apple ID security questions?
    Try answering them at least once to see if you can get them right, even if you are not sure you remember the answers to your security questions.
    If you are confident you can't remember them, try one of the following:
    If you have three security questions and a rescue email address
         - sign in to My Apple ID and select the Password and Security tab to send an email to your rescue email address to reset your security questions and answers.
    If you have one security question and you know your Apple ID password
         - sign in to My Apple ID and select the Password and Security tab to reset your security question.
    If you have one security question, but don't remember your Apple ID password
         - contact Apple Support for assistance. Learn more about creating a temporary support PIN to help Apple confirm your identity when you contact Apple Support.
    If you continue to have issues, please contact our Account Security Team as outlined in this article:
    Apple ID: Contacting Apple for help with Apple ID account security
    http://support.apple.com/kb/HT5699
    Thanks,
    Matt M.

  • How do you change your security questions for your Apple ID ?

    How do you change your security questions under your Apple ID

    How to reset your Apple ID security questions.
    Go to appleid.apple.com, click on the blue button that says 'Manage Your Apple ID'.
    Log in with your Apple ID and password. (If you have forgotten your Apple ID password, go to iforgot.apple.com first to reset your password with a password recovery email)
    Go to the Password & Security section on the left side, and click on the link underneath the security questions that says 'Forgot your answers? Send reset security info email to [email]'.  This will generate an automated e-mail that will allow you to reset your security questions.
    If that doesn't work, or  there is no rescue email link available, then click on 'Temporary Support PIN' that is in the bottom left side, and generate a 4-digit PIN for the Apple Account Security Advisor you will be contacting later.
    Next, go to https://getsupport.apple.com
    (If you see a message that says 'There are no products registered to this Apple ID, simply click on 'See all products and services')
    Choose 'More Products & Services', then 'Apple ID'.
    A new page will open.
    Choose 'Other Apple ID Topics', then 'Forgotten Apple ID Security Questions'.
    Click the blue 'Continue' button.
    Select the contact option that suits your needs best.

  • I am being forced to create 3 security question from your dropdown list and I can choose the questions but can't enter anything in the answer field??

    I am being forced to create 3 security question from your dropdown list and I can choose the questions but can't enter anything in the answer field??

    The problem is twenty three people leaving or twenty three thousand leaving has zero impact on a carrier with over 100 million customers. And they have the lowest churn rate. So if 10,000 or 20,000 or more churn out it means little to the carrier.
    If you have a real lawyer he/she will advise you that you have no case. The device was not lost or stolen by the carrier, you were not eligible for a new device, and like any business who employs large numbers of poorly trained personnel who make low wages what was told to you is not in writing. So a verbal exchange does not hold up.
    In fact in Verizon's customer agreement it has such a disclaimer against any verbal exchanges so if you have that agreement in writing, go get them.
    The posting on public forums and places like Face Book, Linkin, Google+ or a personal web site can open you up to a lawsuit for Dilution of Trade Name, and other offences. However if you have proof then go for it.
    Unfortunately that is how big business works today. A pity

  • Hello I have a problem in calculating the apple id Can you help me please   I forgot answer security questions for your account How can knowledge Please help Please reply as soon as possible   I can not buy from camels Store And the rest of the account ba

    Hello
    I have a problem in calculating the apple id Can you help me please
    I forgot answer security questions for your account How can knowledge
    Please help
    Please reply as soon as possible
    I can not buy from camels Store
    And the rest of the account balance  $25
    Message was edited by: lingo azam

    I think you mean App Store.
    Rescue email address and how to reset Apple ID security questions

  • Frank - Question re your blog "ADF Faces: Exporting ... with POI"

    Hi Frank,
    I am trying to follow the example set by the download you provided from KUBA. I see it is in a JSP, whereas I am using a JSF... when I run the action, I get a NullPointerException and found that the line here:
    DCBindingContainer bc = getBindingContainer();
    if ( bc == null ) { System.out.println("No bc"); }
    verifies my suspicion. bc is not set.
    I added the backing bean in my faces-config.xml... in the download I see that 'bindingContainer' is added as a Managed Property of the bean... I tried doing that but immediately get errors about not setting up the mapping, etc.
    Is there something else I am missing? The download runs fine for me.
    Thanks!!
    Ginni

    Thanks Frank. That worked.
    I want to note here also that I had to change in the 'POIExport.java', where the first row is created, from
    /******************************* Creating first row **************************************/
    Row fr = vo.previous();
    row = sheet.createRow((short)idx);
    to
    Row fr = vo.first();
    row = sheet.createRow((short)idx);
    Otherwise 'fr' was not being set. Now it works perfectly!
    Thanks also to KUBA for the example!

  • HT5622 Good day to advise you that I forgot security questions, email your questions to re-password security has been compromised by some persons illegitimate since the change

    Good day to advise you that I forgot security questions, email your questions to re-password security has been compromised by some persons illegitimate since the change.
    <E-mail Edited by Host>

    Apple does not respond here.  Do not put email addresses in posts here.  The world will see it.

  • HT2506 Hello I'm unable to open any pdf's with preview window opens up with message file couldn't be opened because you don't have permission to view it (none of the pdf's have any security thanks if you can assist

    Hello this week I'm unable to open any pdf's with preview, when I select to open a window opens up with message "file couldn't be opened because you don't have permission to view it" none of the pdf's have any security thanks if you can assist

    Back up all data. Don't continue unless you're sure you can restore from a backup, even if you're unable to log in.
    This procedure will unlock all your user files (not system files) and reset their ownership and access-control lists to the default. If you've set special values for those attributes on any of your files, they will be reverted. In that case, either stop here, or be prepared to recreate the settings if necessary. Do so only after verifying that those settings didn't cause the problem. If none of this is meaningful to you, you don't need to worry about it.
    Step 1
    If you have more than one user account, and the one in question is not an administrator account, then temporarily promote it to administrator status in the Users & Groups preference pane. To do that, unlock the preference pane using the credentials of an administrator, check the box marked Allow user to administer this computer, then reboot. You can demote the problem account back to standard status when this step has been completed.
    Triple-click the following line to select it. Copy the selected text to the Clipboard (command-C):
    { sudo chflags -R nouchg,nouappnd ~ $TMPDIR.. ; sudo chown -R $UID:staff ~ $_ ; sudo chmod -R u+rwX ~ $_ ; chmod -R -N ~ $_ ; } 2> /dev/null
    Launch the Terminal application in any of the following ways:
    ☞ Enter the first few letters of its name into a Spotlight search. Select it in the results (it should be at the top.)
    ☞ In the Finder, select Go ▹ Utilities from the menu bar, or press the key combination shift-command-U. The application is in the folder that opens.
    ☞ Open LaunchPad. Click Utilities, then Terminal in the icon grid.
    Paste into the Terminal window (command-V). You'll be prompted for your login password. Nothing will be displayed when you type it. You may get a one-time warning to be careful. If you don’t have a login password, you’ll need to set one before you can run the command. If you see a message that your username "is not in the sudoers file," then you're not logged in as an administrator.
    The command will take a noticeable amount of time to run. Wait for a new line ending in a dollar sign (“$”) to appear, then quit Terminal.
    Step 2 (optional)
    Take this step only if you have trouble with Step 1 or if it doesn't solve the problem.
    Boot into Recovery. When the OS X Utilities screen appears, select
    Utilities ▹ Terminal
    from the menu bar. A Terminal window will open.
    In the Terminal window, type this:
    res
    Press the tab key. The partial command you typed will automatically be completed to this:
    resetpassword
    Press return. A Reset Password window will open. You’re not  going to reset a password.
    Select your boot volume ("Macintosh HD," unless you gave it a different name) if not already selected.
    Select your username from the menu labeled Select the user account if not already selected.
    Under Reset Home Directory Permissions and ACLs, click the Reset button.
    Select
     ▹ Restart
    from the menu bar.

  • Can I get the Apple security to reset my questions?

    I recently acquired a $25 gift card, and when I tried to buy an album, I realized I had forgotten my security questions. Please and thank you for help.

    Call your country number from http://support.apple.com/kb/HE57 and ask to speak with Account Security.

  • Questions about your new HP Products? HP Expert Day: January 14th, 2015

    Thank you for coming to Expert Day! The event has now concluded.
    To find out about future events, please visit this page.
    On behalf of the Experts, I would like to thank you for coming to the Forum to connect with us.  We hope you will return to the boards to share your experiences, both good and bad.
     We will be holding more of these Expert Days on different topics in the months to come.  We hope to see you then!
     If you still have questions to ask, feel free to post them on the Forum – we always have experts online to help you out.
    So, what is HP Expert Day?
    Expert Day is an online event when HP employees join our Support Forums to answer questions about your HP products. And it’s FREE.
    Ok, how do I get started?
    It’s easy. Come out to the HP Support Forums, post your question, and wait for a response! We’ll have experts online covering our Notebook boards, Desktop boards, Tablet boards, and Printer and all-in-one boards.
    We’ll also be covering the commercial products on the HP Enterprise Business Community. We’ll have experts online covering select boards on the Printing and Digital Imaging and Desktops and Workstations categories.
    What if I need more information?
    For more information and a complete schedule of previous events, check out this post on the forums.
    Is Expert Day an English-only event?
    No. This time we’ll have experts and volunteers online across the globe, answering questions on the English, Simplified Chinese, and Korean forums. Here’s the information:
    Enterprise Business Forum: January 14th 7:00am to 12:00pm and 6:00pm to 11:00pm Pacific Time
    Korean Forum: January 15th 10am to 6pm Korea Time
    Simplified Chinese Forum: January 15th 10am to 6pm China Time
    Looking forward to seeing you on January 14th!
    I am an HP employee.

    My HP, purchased in June 2012, died on Saturday.  I was working in recently installed Photoshop, walked away from my computer to answer the phone and when I came back the screen was blank.  When I turned it on, I got a Windows Error Recovery message.  The computer was locked and wouldn't let me move the arrow keys up or down and hitting f8 didn't do anything. 
    I'm not happy with HP.  Any suggestions?

  • FAO BalusC  Question about your JSF tutorial

    I have the tutorial working fine now, it was a problem with the caching in my browser I think.
    My question is how now do I get your example to work with myFaces? What steps must I follow now in order to get the app to work with myFaces? Do I need to copy in all the commons*.jar files along with the myfaces jars to my apps classpath?

    I have got the app working now with myfaces. I got a blank app from http://www.coreservlets.com/JSF-Tutorial/ but what puzzles me is why are all the extra jars needed for the myfaces implementation that were not needed for the RI one?

  • Security Center has detected Malware on your computer!

    Is this an apple update or virus? I received a gbn.upatenotice.aa stating WINDOWS REQUIRES IMMEDIATE ATTENTION - URGENT SYSTEM SCAN NOTIFICATION! PLEASE READ CAREFULLY!! ATTENTION! security center has detected malware on your computer! Affected Software: Apple Mac 10.6/10.5/10.4, Microsoft Windows 7, Microsoft Windows Vista, Microsoft Windows XP. They want you to click on the http://www.updatemn.com/ For the link to become active, please click on 'Add to contacts' skype button or type it in manually into your web browser!
    I just downloaded skype Sunday. However I noticed about a week ago when I opened a itunes song the wrong song would play.
    Any recommendations?
    Thank You!

    Fake alerts, fake clean up utilities, even fake look-alikes pretending to be a well-known product. Such as reported today on ZDnet:
    http://www.zdnet.com/blog/security/from-rogue-av-to-fake-disk-clean-up-utilities /7804?tag=mantle_skin;content
    And they want you to be foolish and do something and install software (program, disable firewall, downloads 2nd item of malware) including ransomware or just crash the computer and hope it takes out the directory and more.
    Sounds like Skype users might need some type of protection from scams, adware.
    There are infected sites. For Firefox you can block javascript and minimize some of the adware/malware served (sql injection has been around for years now).
    A site can see your IP address, OS, etc and there are or is one or two adware attacks that have a Mac component to them. But rare.

  • I forgot my security answer to the question How can I change my security question

    I forgot my security answer to the question How can I change my security question

    http://support.apple.com/kb/HT5312
    -If you established a rescue email address, there will be a link on the "Passwords & Security" page of id.apple.com.  Clicking the link will send the reset to your rescue email address (NOTE:  This is not the same address as your Apple ID email)
    -If there is no link on the page, then you didn't establish a rescue email address.  Contact AppleCare at 800.694.7466 (If you are in the US), and ask for account security.  You will need to answer some questions to verify your identity, AND you will need access to a computer to generate a temporary support pin.
    -If you are not in the US, click http://support.apple.com/kb/HT5699 - Apple ID: Contacting Apple for help with Apple ID account security
    HTH

  • HT5312 forgot to answer to the secret questions on your account

    forgot to answer to the secret questions on your account

    Start here (change country if necessary) and navigate to 'Password and Security', reset your security questions using the link provided, you will receive an email to your rescue address, use the link in the email and reset your security questions.
    If that doesn't help, you don't receive a reset email or you don't have a rescue address, you should contact AppleCare who will initially try to assist you with a reset email or if unsuccessful will pass you to the security team to reset your security questions for you.
    If you are in a region that doesn't have international telephone support try contacting Apple through iTunes Store Support.

  • I wont to fix my old id account my email is  and when you whant to reset the password i dont recieve any email from apple id and when you answer question about your birth date it says not file is found.

    When i try and reset my id account it says it has been blocked for security reason. When you answer question about your birth date no souch record found and when i resset it by email io dont recieve any email from apple id reseat password. can anyone hep me ?
    <Email Edited by Host>

    Security questions:
    https://discussions.apple.com/docs/DOC-4551
    http://support.apple.com/kb/HT5312

Maybe you are looking for

  • How to set up connection between S and C

    I want to realize a chat between server and client. on both side ,there is a textArea to get the information to send to the other. I know the socket is must be used,but how to set up the data source(from textarea or textfield),and how to store the da

  • Does someone possess Macally eXRack SATA-Card or have a newer Firmware/driver for it?

    Hi, I have this card and I wondered, if there might be an updated firmware for it. Since mine seems to have the one that came with it stock. I contacted MacAlly, no answer. Let vendor contact Macally, no response to hinm either. I wanted a newer firm

  • Question on cluster and firewall IP address translation

    We are planning to add a client that needs to access our weblogic cluster through firewalls with IP address translation. According to the WebLogic (5.1) documentation, this could be done by opening port 7001 in the firewalls, and BIND WebLogic SERVER

  • ICloud keeps on reminding "not enough storage"?

    so then i clicked settings and ok a couple of times. But still, it wont go anywhere, so now i cant even turn my alarm off! it wont get off the screen and i cant even shut it down! How do you remove this? It blocks my whole access to my phone, i only

  • Internet limited and download file too big!

    I can't download the free trial version of photoshop 12 as my gigs are limited on satellite....now downloaded the file used up all my gigs for the month and cannot open the program can I buy photoshop on disc?