10.12.2012 Views

The Java EE 5 Tutorial (PDF) - Oracle Software Downloads

The Java EE 5 Tutorial (PDF) - Oracle Software Downloads

The Java EE 5 Tutorial (PDF) - Oracle Software Downloads

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

28<br />

CHAPTER 28<br />

Introduction to Security in the <strong>Java</strong> <strong>EE</strong> Platform<br />

This and subsequent chapters discuss how to address security requirements in <strong>Java</strong> <strong>EE</strong>, web,<br />

and web services applications. Every enterprise that has sensitive resources that can be accessed<br />

by many users, or resources that traverse unprotected, open, networks, such as the Internet,<br />

needs to be protected.<br />

This chapter introduces basic security concepts and security implementation mechanisms.<br />

More information on these concepts and mechanisms can be found in the Security chapter of<br />

the <strong>Java</strong> <strong>EE</strong> 5 specification. This document is available for download online at<br />

http://www.jcp.org/en/jsr/detail?id=244.<br />

Other chapters in this tutorial that address security requirements include the following:<br />

■ Chapter 29, “Securing <strong>Java</strong> <strong>EE</strong> Applications,” discusses adding security to <strong>Java</strong> <strong>EE</strong><br />

components such as enterprise beans and application clients.<br />

■ Chapter 30, “Securing Web Applications,” discusses and provides examples for adding<br />

security to web components such as servlets and JSP pages.<br />

Some of the material in this chapter assumes that you understand basic security concepts. To<br />

learn more about these concepts, you should explore the <strong>Java</strong> SE security web site before you<br />

begin this chapter. <strong>The</strong> URL for this site is http://java.sun.com/javase/6/docs/<br />

technotes/guides/security/.<br />

This tutorial assumes deployment onto the Application Server and provides some information<br />

regarding configuration of the Application Server. <strong>The</strong> best source for information regarding<br />

configuration of the Application Server, however, is the <strong>Oracle</strong> GlassFish Server 2.1.2<br />

Administration Guide. <strong>The</strong> best source for development tips specific to the Application Server is<br />

the <strong>Oracle</strong> GlassFish Server 2.1.2 Developer’s Guide. <strong>The</strong> best source for tips on deploying<br />

applications to the Application Server is the <strong>Oracle</strong> GlassFish Server 2.1.2 Application<br />

Deployment Guide.<br />

763

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!