It seems the security groups are not propagated in the following configuration :
WEB -> EJB -> EJB
if WEB auth method is not CLIENT-CERT.
Is there a way to achieve the same behaviour with a FORM auth ?
[Message sent by forum member 'kabhal' (kabhal)]
http://forums.java.net/jive/thread.jspa?messageID=342234