[jboss-user] [Security & JAAS/JBoss] - Re: LdapExtLoginModule and jaasSecurityDomain

2007-08-21 Thread a_lai82
Many thanks to cmiles123 for this post. Most helpful. View the original post : http://www.jboss.com/index.html?module=bb&op=viewtopic&p=4076367#4076367 Reply to the post : http://www.jboss.com/index.html?module=bb&op=posting&mode=reply&p=4076367 ___

[jboss-user] [Security & JAAS/JBoss] - Re: Active Directory and LdapExtLoginModule?

2007-08-21 Thread a_lai82
I found an article http://www.jboss.com/index.html?module=bb&op=viewtopic&p=3932448#3932448 Posted by "cmiles123" who details the steps required to Encrypt the bindCredentials. Many thanks to "cmiles123" for the post. View the original post : http://www.jboss.com/index.html?module=bb&op=viewt

[jboss-user] [Security & JAAS/JBoss] - Re: Active Directory and LdapExtLoginModule?

2007-08-21 Thread a_lai82
Can I ask has anyone managed to encrypt the bindCredential within the login-config.xml It seems like a serious security issue having plain text passwords. Is this really the only way to allow users to login using the "sAMAccountName" rather than the DN which uses the CN value. It would seem lik