Dear Users,
I am new to EJB 3 and JAAS. My previous experience is with Spring and Acegi. Our organization is developing an ERP solution. So we are thinking about a architecture of EJB 3 (Entities, EAO, and BO) + [Spring (IoC) + NetBeans Platform]; Java EE Container is GlassFish. I have been assigned to find out how the security can be implemented. We want the application to container independent. So can someone please help on how the security of the system could be designed.
I was thinking of, certificate based authentication for clients and db based authentication for users; but I am not sure how to implement that as well. So if someone could shed light on that or even provide a document or sample project link it would be helpful.
Thank you in advance,
--
Imran M Yousuf
Software Engineer
Smart IT Engineering
Dhaka, Bangladesh
Email: imran@smartitengineering.com
Mobile: +880-1711402557