What are the responsibilities of an application assembler in implementing security?

October 2nd, 2008 by uCertify Leave a reply »

An application assembler has the following security-related responsibilities in EJB:

  • Declaring security roles in the deployment descriptor in the <security-role> element.
  • Mapping security roles with the role-references using the <role-link> element.
  • Declaring method permissions for each security role using the <method-permission> element.
  • Making certain methods inaccessible using the <exclude-list> so that they can never be called by any client.
  • Excluding certain methods from being checked for authorization using the <unchecked/> element.

Other than these, the application assembler may or may not define an optional description element that helps the deployer to map the abstract role names to the real users.

Like this article? Share it with others
If you like this article, please leave a comment or subscribe this blog via RSS or via e-mail, Bookmark and share through your network. Click the AddThis button below. Thanks.
  • Share/Bookmark
Advertisement

Leave a Reply

uCertify.com | Our Company | Articles | Contact Us | News and Press Release | uCertify India | Entries (RSS)
MCSE: MCSA, MCTS, MCITP    JAVA Certification: SCJP, SCWCD    Cisco Certification: CCNA, CCENT    A+, Network+, Security+ Project+
Oracle Certification: OCP 11g, OCP 10g, OCA 11g, OCA 10g    CIW foundation    EC-212-32,    CISSP    Photoshop ACE CS4    Adobe Flash ACE, PMP, CAPM
© 2008 uCertify.com. All rights reserved. All trademarks are the property of their respective owners.