JAAS表单身份验证总是在Jboss中失败

时间:2011-10-18 09:15:16

标签: java jboss authorization jaas

我开发了基于Jboss教程示例的Web应用程序。在结果登录页面中将我发送到登录错误页面。我使用DatabaseServerLoginModule。如果替换为UsersRolesLoginModule,那么登录就可以了。

谷歌建议我发布http://community.jboss.org/message/141999#141999,但没有在那里回答。

Jboss日志:

我认为 11:37:09,128中的问题DEBUG [[jsp]:debug]禁用进一步输出的响应

11:37:08,902 DEBUG [CoyoteAdapter:debug]  Requested cookie session id is 3793E0F8FF02F043D9DCF5D98A85AFC6
11:37:08,903 DEBUG [AuthenticatorBase:debug] Security checking request GET /example2/
11:37:08,903 DEBUG [RealmBase:debug]   Checking constraint 'SecurityConstraint[All resources]' against GET /index.jsp --> true
11:37:08,904 DEBUG [RealmBase:debug]   Checking constraint 'SecurityConstraint[All resources]' against GET /index.jsp --> true
11:37:08,904 DEBUG [AuthenticatorBase:debug]  Calling hasUserDataPermission()
11:37:08,904 DEBUG [RealmBase:debug]   User data constraint has no restrictions
11:37:08,956 DEBUG [JNDIBasedSecurityManagement:debug] Creating SDC for domain=JaasDbRealm
11:37:08,957 DEBUG [JaasDbRealm:debug] CallbackHandler: org.jboss.security.auth.callback.JBossCallbackHandler@4437d3
11:37:08,958 DEBUG [JaasDbRealm:debug] CachePolicy set to: org.jboss.util.TimedCachePolicy@254fb0
11:37:08,959 DEBUG [JNDIBasedSecurityManagement:debug] setCachePolicy, c=org.jboss.util.TimedCachePolicy@254fb0
11:37:09,037 DEBUG [AuthenticatorBase:debug]  Calling authenticate()
11:37:09,039 DEBUG [FormAuthenticator:debug] Save request in session '81BC14FA6517824ADDE56EDAEC9EA0C6'
11:37:09,128 DEBUG [[jsp]:debug]  Disabling the response for futher output
11:37:09,134 DEBUG [AuthenticatorBase:debug]  Failed authenticate() test
11:37:12,885 DEBUG [CoyoteAdapter:debug]  Requested cookie session id is 81BC14FA6517824ADDE56EDAEC9EA0C6
11:37:12,886 DEBUG [AuthenticatorBase:debug] Security checking request POST /example2/j_security_check
11:37:12,887 DEBUG [FormAuthenticator:debug] Authenticating username 'admin'
11:37:13,035 DEBUG [[jsp]:debug]  Disabling the response for futher output
11:37:13,036 DEBUG [AuthenticatorBase:debug]  Failed authenticate() test ??/example2/j_security_check

我的conf:

登录-config.xml中

 <application-policy name = "JaasDbRealm">
        <authentication>
            <login-module code = "org.jboss.security.auth.spi.DatabaseServerLoginModule"
             flag = "required">

<module-option name="dsJndiName">jdbc/MysqlDS</module-option>
                <module-option name="principalsQuery">select passwd from Users username where username=?</module-option>
                <module-option name="rolesQuery">select userRoles, 'Roles' from UserRoles where username=?</module-option>
            </login-module>
        </authentication>
    </application-policy>

jboss-web.xml

<?xml version="1.0" encoding="UTF-8"?>
<jboss-web>
    <security-domain>java:/jaas/JaasDbRealm</security-domain>
</jboss-web>

的web.xml

    <security-constraint>
        <web-resource-collection>
            <web-resource-name>All resources</web-resource-name>
            <description>Protects all resources</description>
            <url-pattern>/*</url-pattern>
        </web-resource-collection>
        <auth-constraint>
            <role-name>admin</role-name>
        </auth-constraint>
    </security-constraint>
    <login-config>
        <auth-method>FORM</auth-method>
        <form-login-config>
            <form-login-page>/login.jsp</form-login-page>
            <form-error-page>/error.jsp</form-error-page>
        </form-login-config>
    </login-config>
    <security-role>
        <role-name>admin</role-name>
    </security-role>

的login.jsp

<form name="loginForm" method="post" action="j_security_check">
            <table>
                <tr>
                    <td>User Name:</td>
                    <td><input type="text" name="j_username"></td>
                </tr>
                <tr>
                    <td>User Password:</td>
                    <td><input type="text" name="j_password"></td>
                </tr>
                <tr colspan="2">
                    <td><input type="submit" value="login"></td>
                </tr>
            </table>
        </form>

1 个答案:

答案 0 :(得分:2)

已发现问题。失败数据源JNDI名称jdbc / MysqlDS

重新调用java:jdbc / MysqlDS并正常工作。