Network Deployment (Distributed operating systems), v8.0 > Secure applications and their environment > Secure web applications
Web application security components and settings
- Web component security
A web module consists of servlets, JSP files, server-side utility classes, static web content, which includes HTML, images, sound files, cascading style sheets (CSS), and client-side classes or applets. We can use development tools such as Rational Application Developer to develop a web module and enforce security at the method level of each web resource.
- Secure web applications using an assembly tool
We can use three types of web login authentication mechanisms to configure a web application: basic authentication, form-based authentication and client certificate-based authentication. Protect web resources in a web application by assigning security roles to those resources.
- Security constraints in web applications
Security constraints determine how web content is to be protected.
- Security settings
Use the admin console to modify the security settings for all applications.
- Assign users and groups to roles
This topic describes how to assign users and groups to roles if you are using WAS authorization for Java EE roles.
- Secure applications during assembly and deployment
Several assembly tools exist that are graphical user interfaces for assembling enterprise or Java EE applications. We can use these tools to assemble an application and secure EJB and web modules in that application.