Develop applications that use programmatic security



Applications go through three stages...

Security configured during the assembly stage and declared in the deployment descriptors is called declarative security, and is enforced by the security runtime.

For some applications, declarative security is not sufficient to express the security model of the application. For these applications, we can use programmatic security.

  1. Develop secure Web apps.
  2. Develop servlet filters for form login processing.
  3. Develop form login pages.
  4. Develop enterprise bean component applications.
  5. Develop with JAAS to log in programmatically.
  6. Develop your own Java EE security mapping module.
  7. Develop custom user registries.
  8. Develop a custom interceptor for trust associations.


