Looking at your authenticated subject: | 2006-06-30 19:57:35,030 TRACE [org.jboss.security.plugins.JaasSecurityManager.my-web] getUserRoles, subject: Subject: | Principal: [EMAIL PROTECTED] | Principal: Roles(members) | Principal: com(members:secure_capture_role,secure_view_role,secure_admin_role) |
I can tell you that there is some custom tomcat valve or a Login Module that is screwing up the subject by adding the roles under a principal/group called as "com". It should have been under Roles. View the original post : http://www.jboss.com/index.html?module=bb&op=viewtopic&p=3954744#3954744 Reply to the post : http://www.jboss.com/index.html?module=bb&op=posting&mode=reply&p=3954744 Using Tomcat but need to do more? Need to support web services, security? Get stuff done quickly with pre-integrated technology to make your job easier Download IBM WebSphere Application Server v.1.0.1 based on Apache Geronimo http://sel.as-us.falkag.net/sel?cmd=lnk&kid=120709&bid=263057&dat=121642 _______________________________________________ JBoss-user mailing list JBoss-user@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/jboss-user