资源描述:
《Integrating JSR 196 (JASPIC) with Containers》由会员上传分享,免费在线阅读,更多相关内容在学术论文-天天文库。
1、1
2、Copyright©2011,Oracleand/orit’saffiliates.Allrightsreserved.
3、Confidential–OracleInternalIntegratingJSR196(JASPIC)withContainersWillHopkins,WebLogicSecurityArchitect2
4、Copyright©2011,Oracleand/orit’saffiliates.Allrightsreserved.
5、Confidential–OracleInternalThefollowingisintendedtooutlineou
6、rgeneralproductdirection.Itisintendedforinformationpurposesonly,andmaynotbeincorporatedintoanycontract.Itisnotacommitmenttodeliveranymaterial,code,orfunctionality,andshouldnotberelieduponinmakingpurchasingdecisions.Thedevelopment,release,andtimingofanyfeaturesorfunctionalitydescribedforOr
7、acle’sproductsremainsatthesolediscretionofOracle.3
8、Copyright©2011,Oracleand/orit’saffiliates.Allrightsreserved.
9、Confidential–OracleInternalInsertInformationProtectionPolicyClassificationfromSlide8Agenda•WhatisJASPIC?•JASPICProgrammingModel•BenefitsofJASPIC•JASPICSupportinWebLogic•Integrat
10、ionChallenges•SuggestionsforJASPICEnhancements4
11、Copyright©2011,Oracleand/orit’saffiliates.Allrightsreserved.
12、Confidential–OracleInternalWhatisJASPIC?•JSR196•JavaAuthenticationSPIforContainers•Astandardwaytoprovideauthenticationincontainers–JAASauthentication(LoginModules)application-centr
13、ic–NostandardJAASintegrationwithcontainers5
14、Copyright©2011,Oracleand/orit’saffiliates.Allrightsreserved.
15、Confidential–OracleInternalWhatisJASPIC?MessageProcessingModel•JASPICdefinesauthenticationinthecontextofamessageprocessingmodel–Secureoutboundmessage–Validateincomingmessage•Enablessup
16、portforauthenticationprotocols–Challenge/response–Complexprotocolsinvolvingmultipleexchanges•Naturalintegrationwithmessageprocessingruntimes–E.g.SOAP6
17、Copyright©2011,Oracleand/orit’saffiliates.Allrightsreserved.
18、Confidential–OracleInternalWhatisJASPIC?MessageProcessingModel(1)secureReques
19、t()(2)validateRequest()DispatchRequest(4)validateResponse()(3)secureResponse()Dashedlinesrepresentchallenge/response7
20、Copyright©2011,Oracleand/orit’saffiliates.Allrightsreserved.
21、Confidential–OracleInternalWhatisJASPIC?JASPICProfiles•CurrentProfiles–ServletContainer