16.5. EJB security in the enterprise

This section describes the problems that EJB-to-EJB interactions cause for enterprise-level security. It is important to keep in mind that the problems discussed in this section apply mostly to wide-area EJB-to-EJB method calls, which are mostly likely to be significant in business-to-business applications. The more common, Web-based model of application provision does not suffer from the same limitations. We begin with a discussion of the use of firewalls, and the problems that EJB protocols impose on their use. Then we will consider various solutions to these problems, including the use of HTTP-based communications protocols as an alternative to IIOP.

16.5.1. The problem

The Internet is a very useful medium ...

Get Applied Enterprise JavaBeans™ Technology now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.