If you are using a custom domain.xml for the embedded server application, you can turn default P2R on by setting this property to true in domain.xml:
<security-service activate-default-principal-to-role-mapping="true">
[Message sent by forum member 'nitkal' (nithya.subramanian_at_sun.com)]
http://forums.java.net/jive/thread.jspa?messageID=384721