assuming a web application... does the following help ?
web.xml
<security-role>
<description>all authenticated users</description>
<role-name>allauthenticated</role-name>
</security-role>
<security-role>
<description>disable this role</description>
<role-name>none</role-name>
</security-role>
sun-web.xml
<security-role-mapping>
<role-name>allauthenticated</role-name>
<principal-name>your-principal1</principal-name>
<principal-name>your-principal2</principal-name>
.....
</security-role-mapping>
Thanks
[Message sent by forum member 'kumarjayanti' (kumarjayanti)]
http://forums.java.net/jive/thread.jspa?messageID=242297