Blog

Articles, tutorials, and field notes on identity, integration, API management, and application security — spanning nearly two decades of hands-on work.

A Simple Web Application

In order to test J2EE Security with the Security Realm and Openldap User Repository we created in the last article in this series, we need an application to protect. The focus of this article is to create a very simple web application that can be protected by J2EE Security.

J2EE / Jakarta EELDAPJava

J2EE Security

The article continues the series discussing J2EE Security and its related concepts. The following brings together the numerous concepts discussed in the past articles.

J2EE / Jakarta EEJavaSecurity

Capturing JVM TCP Traffic

Any time you have a distributed application, there is network communication involved. Capturing this network traffic can be instrumental in diagnosing and solving problems. Generally, to capturing network traffic, superuser privledges, timing, and a bit of luck is needed. Often, the appropriate…

DebuggingJVM InternalsTroubleshooting

Websphere v6.x Classloaders

Building on the ideas introduced in the last article, a J2EE Application servers classloaders are explored in this installment. In particular, Websphere Application Server v.6.x Classloaders are introduced. The J2EE Spec provides some guidance regarding J2EE Application Servers, but as with so many…

ClassloadersJ2EE / Jakarta EEJVM Internals