Adding support for Security Policies to Tuscany Web 2.0 extensions

2008-09-16 Thread Luciano Resende
I have started some research around using Policy to enable some security capabilities to Tuscany Web 2.0 extensions, and have identified some initial scenarios as listed below: Scenarios: Web 2.0 application requires that a user get authenticated before it can access the application. Web 2.0 app

Re: Adding support for Security Policies to Tuscany Web 2.0 extensions

2008-09-17 Thread Simon Laws
Hi Luciano Good to hear you thinking along these lines. Taking the scenario motivated approach will help improve policy support generally I think. I've put comments that come immediately to mind in line. Once you think we have a good handle on the initial scenarios we could start making some ites

Re: Adding support for Security Policies to Tuscany Web 2.0 extensions

2008-10-14 Thread Luciano Resende
On Wed, Sep 17, 2008 at 1:26 AM, Simon Laws <[EMAIL PROTECTED]> wrote: > Hi Luciano > > Good to hear you thinking along these lines. Taking the scenario motivated > approach will help improve policy support generally I think. I've put > comments that come immediately to mind in line. > > Once you t

Re: Adding support for Security Policies to Tuscany Web 2.0 extensions

2009-02-25 Thread Luciano Resende
I have started working on this again, and have made some progress on enabling SSL using policies and also adding the capability to configure authentication in embedded servers using policy. These new stuff is demonstrated in the new store-secure sample. - Enabling SSL is done via confidentiality i