Go Premium for a chance to win a PS4. Enter to Win

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 1318
  • Last Modified:

Weblogic : How-To authorize all authenticated users ?

Hello,

All is in the title : how-to authorize all authenticated users to access a set of ressource ?

If you could provide a sample or give a link to a tuto ?

Thank's in advance ;)
0
cobol60
Asked:
cobol60
  • 3
1 Solution
 
ValeriCommented:
Probably I misunderstood the question, but...
Just make these resources available only from the places(jsp's, servlets...) accessible only for the authenticated users.
0
 
cobol60Author Commented:
that's the subject of the question : how to do that (making these ressources accessible only for the authenticated users) :

Weblogic needs apparently to map users to roles ... and we can make accessible a set of ressources to a role ... But i need to make ressources not to a role but to all authenticated users.

Alternatly i can define a role wich is granted to access ressources (for instance, a role "AUTH_USERS") in wich i could map all authenticated users ... But i don't know how.

Thanks
0
 
cobol60Author Commented:
we could make functionnal the use of a role ... defining the role in the web.xml and the membership of a user to this role in weblogic.xml.

But, i can't do that because the admin MUST be able to add some users to the application via the application (not the weblogic Console) and this user must be granted to access the application's ressources without redploying anything.

We are migrating the authentication system from a soft-coded Ldap connexion in the application to a Weblogic OpenLdapAuthenticator

Thanx
0
 
ECollinCommented:
hi

you have to create and deploy a new role mapping provider in your security realm :
http://download.oracle.com/docs/cd/E14571_01/web.1111/e13718/rm.htm#i1145541

Emmanuel
0
 
cobol60Author Commented:
you did NOT mention :
- Wich type of roles
- With wich parameters

You gave a link to a Weblogic Documentation ... Didn't you think i'd know the existence of these docs ?

I know you can gain some points ... But i would have been please you NOT mention the WRONG doc ... and provide the chapter n°.

Your comments is likely to : "Read the docs" ... So with this kind of comment i would NOT have to pay for beeing member of this forum.

The answer, after reading the doc, as you obliged me, was :

http://download.oracle.com/docs/cd/E14571_01/web.1111/e13747/secroles.htm#ROLES181

in § Defaults Groups \ Runtime Groups ... Use the "users" group.

A friend of mine said ... If you don't know ... Don't say anything.
0

Featured Post

Concerto Cloud for Software Providers & ISVs

Can Concerto Cloud Services help you focus on evolving your application offerings, while delivering the best cloud experience to your customers? From DevOps to revenue models and customer support, the answer is yes!

Learn how Concerto can help you.

  • 3
Tackle projects and never again get stuck behind a technical roadblock.
Join Now