Hi all.
I have developed a very simple web application that uses JAAS.
the application getting the username and the password from a
JSP page, then the DataSourceLoginModule tries to check if there are an equivalents for the username and the password in a database.
if yes, authentication is succeded.
this is my login configuration file :
WebLogin {
com.DataSourceLoginModule requisite
};
well, I am a novice and I don't know what means if I added another login module to my config file.
if I added NTSystem module to my file, does this mean that the application will search for the username and the password in the ActiveDirectory ?
if I used KeyStoreLoginModule, does the mean that the user must enter the key store alias of the server's key store in order to be authenticated ?
Please, imagine this scenario :
WebLogin {
com.DataSourceLoginModule requisite
com.sun.security.auth.module.KeystoreLoginModule requisite
};
the JSP page is responsible for collecting the username and the password from the user.
assuimg the user has supplied the right values, how can I prompt the user to enter the key store alias ?
should I create a third text field in the form of the JSP page to collect this alias ?
last question :
I am using WinXP (localhost server), can I use kerberos login module ?
if yes, would you mind telling me what do I need to do to use kerberos in my system ?
thanks
alot ranchers