Not accessible resources configuration

17 views
Skip to first unread message

richard groote

unread,
Feb 6, 2023, 2:37:54 AM2/6/23
to Pac4j users mailing list
Hello,

We are currently changing our security from standard JAAS (with login modules and security constraints) to the Pac4J based on JEE filters. The reason is that Pac4J supports more authentication methods out of the box and it's easier to configure.

Currently there is one scenario i don't know how to configure for Pac4J. In our 'old web,xml' we had secure resources, public resources and resources that are not accessible.  For instance there is an 'uploadFile' servlet which is some cases should never be accessible.

So the secure resources are within the 'url-mapping' of the security filter. The public resources are defined within a regular expression and using the path matcher. How can i best handle URI's that should never be accessible.

Kind regards,

Richard


Reply all
Reply to author
Forward
Message has been deleted
0 new messages