Hi,
This is really driving me nuts, and I wouldn't have
posted if I hadn't looked before through the jboss forum, the mailing list and
the manuals.
Attached you will find a zip with a
simple .ear file and the files login-config.xml and password/role files,
which I believe to be quite as the examples I've found in these
pages.
In this test, I'm just trying to have two different
directories (secured1 and secured2) only accessible for the adequate user (role1
and role2).
Although the login form is presented, it accepts
any user/password and gives access to the directories.
Please, have a quick look at the files, and tell me
what I'm doing wrong.
I'm using jboss-3.0.0 with
tomcat-4.0.3
Thanks a lot.
|
testSecure.zip
Description: Zip compressed data