users@glassfish.java.net

Re: ServerAuthModule versus Filter

From: <glassfish_at_javadesktop.org>
Date: Thu, 19 Jun 2008 12:34:07 PDT

I'd like to understand the problem better. if you could provide
a sequence diagram or list, that would be very helpful. I'd like to know see the forwards and redirects, and the places where you see your filter being run.

i think you do something like the following

1. browser sends request to servlet container
2. container invokes sam.validateRequest with request
3. sam redirects response to login page
4. browser submits login page
5. container invokes sam.validateRequest
6. sam validates creds, adds cookie to response, and redirects to original request url
6. filter runs (does not see cookie perhaps because it was added to response)
7. servlet runs
8. filter runs
9. container invokes sam.secureResponse
10 container returns response to browser
[Message sent by forum member 'monzillo' (monzillo)]

http://forums.java.net/jive/thread.jspa?messageID=281395