Book Image

Apache MyFaces 1.2 Web Application Development

Book Image

Apache MyFaces 1.2 Web Application Development

Overview of this book

Hypes and trends (such as Web 2.0) cause a change in the requirements for user interfaces every now and then. While a lot of frameworks are capable of meeting those changing requirements, it often means you as a developer need in-depth knowledge of web standards, such as XHTML and JavaScript. A framework like Apache MyFaces that hides all details of how the page is rendered at the client and at the same time offers a rich set of tools and building blocks could save you a lot of time, not only when you're building a brand new application but also when you're adapting an existing application to meet new user interface requirements.This book will teach you everything you need to know to build appealing web interfaces with Apache MyFaces and maintain your code in a pragmatic way. It describes all the steps that are involved in building a user interface with Apache MyFaces. This includes building templates and composition components with Facelets, using all sorts of specialized components from the Tomahawk, Trinidad, and Tobago component sets and adding validation with MyFaces Extensions Validator.The book uses a step-by-step approach and contains a lot of tips based on experience of the MyFaces libraries in real-world projects. Throughout the book an example scenario is used to work towards a fully functional application when the book is finished.This step-by-step guide will help you to build a fully functional and powerful application.
Table of Contents (22 chapters)
Apache MyFaces 1.2
Credits
About the Author
Acknowledgement
About the Reviewers
Preface
Trinidad Tags
Trinidad Text Keys
Default JSF Error Messages
ExtVal Default Error Messages

Using container-managed security with JSF


In the previous chapters of this book, the topic security was somewhat ignored. That’s fine, as it would not have added much to illustrating the possibilities of the various subprojects of MyFaces. However, a production quality application does need some degree of security most of the time. Java EE offers a container-managed security scheme, which allows us to add security to any Java EE application. This Java Authentication and Authorization Service (JAAS) takes care of pretty much everything that has to do with security. This can save us a lot of effort. Covering all of the possibilities of JAAS goes beyond the scope of this book. There are, however, some tricky things when it comes to using JAAS in conjunction with JavaServer Faces, and that is what this section is focusing on.

Enabling container-managed security

Let’s quickly recall the steps needed to add security to our application. First, we have to configure security in our web.xml file:...