tomee-users mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Matthew Broadhead <matthew.broadh...@nbmlaw.co.uk.INVALID>
Subject protect endpoint with basic auth
Date Wed, 22 Aug 2018 13:55:16 GMT
my webapp already has a login-config set to keycloak in web.xml so AFAIK 
i cannot define any other security configs there.  why doesn't tomcat 
allow multiple security methods?
<login-config>
     <auth-method>KEYCLOAK</auth-method>
     <realm-name>secure</realm-name>
</login-config>

is there another way to protect a jax-rs endpoint using basic auth 
without having to create another webapp?  i read something about valves...


Mime
View raw message