RE: decouple authentication and authorization of TOMCAT

2009-09-16 Thread John Chen
authorization of TOMCAT -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 André, On 9/14/2009 3:33 PM, André Warnier wrote: > John Chen wrote: >> Apache front-end will do the authentication, does tomcat still use >> tomcat-users.xml for the authorization part? > > I am not quit

RE: decouple authentication and authorization of TOMCAT

2009-09-14 Thread John Chen
authentication and authorization of TOMCAT John Chen wrote: ... > > I am also thinking using Apache Web Server to do the authentication and use > tomcat for authorization, do you think it would work? > With the Apache/mod_jk/Tomcat combination it can, certainly. There exists (I believe in the

RE: decouple authentication and authorization of TOMCAT

2009-09-14 Thread John Chen
: decouple authentication and authorization of TOMCAT John Chen wrote: > Hi, > > > > We have installed a third-party software running on tomcat. Is there > anyway to decouple tomcat authentication and authorization? We have to > use AD for authentication and we are not encour

RE: decouple authentication and authorization of TOMCAT

2009-09-14 Thread John Chen
: Re: decouple authentication and authorization of TOMCAT 2009/9/14 John Chen > I am also thinking using Apache Web Server to do the authentication and use > tomcat for authorization, do you think it would work? > Most things can be made to work - "with sufficient thrust, pigs fly jus

decouple authentication and authorization of TOMCAT

2009-09-14 Thread John Chen
Hi, We have installed a third-party software running on tomcat. Is there anyway to decouple tomcat authentication and authorization? We have to use AD for authentication and we are not encouraged to add groups to AD just for the new software. Any help would be appreciated. Thanks Jo