
I'd like to apply a security constraint for a webapp through a LDAP
server. But I don't want to take account of eventual roles associated
with a user.

Here is a part of my web.xml :

### web.xml : BEGIN ###
<!-- Security constraints -->
     <description>Authenticated users (LDAP)</description>

   <realm-name>MyApp Protected Area</realm-name>
### web.xml : END ###

As you can see, there's no role specified in the <auth-constraint>
tag, and there's no <security-role> declared, as I precisely don't
want to check roles to access to my webapp.

Here's a part of my context.xml :

### context.xml : BEGIN ###
 <Realm className="org.apache.catalina.realm.JNDIRealm" debug="99"
### context.xml : END ###

Here's the login.html file :

### login.html : BEGIN ###
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"
<title>Login Page</title>
<h1>Login to My Web Application</h1>
If you have been issued a username and password, key them in here now!
<form method="POST" action="j_security_check">
Username : <input type="text" size="15" maxlength="25"
Password : <input type="password" size="15" maxlength="25"
<input value="Login" type="submit">&nbsp;&nbsp;&nbsp;&nbsp;<input
value="Clear" type="reset">
### login.html : END ###

As you can see, I've put the "j_security_check" action, and the
j_username & j_password variables.

The user/password test is correctly checked, and passed, but there's
something wrong because the role doesn't match or something, but I
don't want and I don't need to check roles. How can I achieve it ?

Here's an extract of my log file, that shows that the authentification
succeeds :
### log : BEGIN ###
DEBUG http-8080-Processor23
org.apache.catalina.authenticator.FormAuthenticator - Authenticating
username 'toto'
DEBUG http-8080-Processor23
org.apache.catalina.authenticator.FormAuthenticator - Authentication
of 'toto' was successful
### log : END ###

Thanks in advance,


To start a new topic, e-mail: users@tomcat.apache.org
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to