change for future Tomcat releases.
Thanks,
Shivaraj
On 12/8/06, Shivaraj Tenginakai <[EMAIL PROTECTED]> wrote:
Hi All,
The current JAAS based authentication in Tomcat (6.0.2) , has no means of
manipulating the associated credentials. This prevents an application from
specifying more c
Hi All,
The current JAAS based authentication in Tomcat (6.0.2) , has no means of
manipulating the associated credentials. This prevents an application from
specifying more complex security policies. For example, timing out the roles
independent of the session timeout.
A very simple fix would be