{"id":287,"date":"2015-11-02T20:15:12","date_gmt":"2015-11-02T11:15:12","guid":{"rendered":"http:\/\/esoro.jp\/?p=287"},"modified":"2015-11-06T06:24:40","modified_gmt":"2015-11-05T21:24:40","slug":"%e3%83%ac%e3%83%ab%e3%83%a0%e3%81%ae%e4%bb%a3%e3%82%8f%e3%82%8a%e3%81%abjaspic%e3%81%a7","status":"publish","type":"post","link":"https:\/\/esoro.jp\/?p=287","title":{"rendered":"\u30ec\u30eb\u30e0\u306e\u4ee3\u308f\u308a\u306bJASPIC\u3067"},"content":{"rendered":"<p>\u3000\u4eca\u3001\u4f01\u696d\u5185\u3067\u5c11\u4eba\u6570\u304c\u4f7f\u7528\u3059\u308bWEB\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u3092WebLogic\u3067\u52d5\u304b\u3059\u524d\u63d0\u3067\u4f5c\u3063\u3066\u307e\u3059\u304c\u3001\u30e6\u30fc\u30b6\u30fc\u8a8d\u8a3c\u306b\u3064\u3044\u3066\u3069\u3046\u3057\u3088\u3046\u304b\u3068\u8981\u4ef6\u3092\u78ba\u8a8d\u3057\u305f\u3068\u3053\u308d\u3001\u5c11\u4eba\u6570\u4f7f\u7528\u306e\u30a2\u30d7\u30ea\u306a\u306e\u3067LDAP\u7121\u3057\u3001WebLogic\u306b\u767b\u9332\u30fb\u7ba1\u7406\u3057\u305f\u304f\u306a\u3044\u306e\u3067Weblogic\u306e\u30ec\u30eb\u30e0\u3082\u4f7f\u308f\u306a\u3044\u3067\u3068\u306e\u3053\u3068\u3002\u3068\u306a\u308b\u3068\u5f93\u6765\u306eDB\u306b\u30e6\u30fc\u30b6\u30fc\u30c6\u30fc\u30d6\u30eb\u4f5c\u3063\u3066\u30e6\u30fc\u30b6\u30fc\u7ba1\u7406\u753b\u9762\u3068\u304b\u3082\u4f5c\u308b\u611f\u3058\u306b\u306a\u308a\u307e\u3059\u3002<br \/>\n\u3000\u30e6\u30fc\u30b6\u30fc\u306b\u306f\u6570\u30d1\u30bf\u30fc\u30f3\u3042\u308b\u3046\u3061\u306e\uff11\u3064\u306e\u6a29\u9650\u3092\u4ed8\u4e0e\u3059\u308c\u3070\u4f7f\u3048\u308b\u753b\u9762\u3068\u4f7f\u3048\u306a\u3044\u753b\u9762\u304c\u6c7a\u307e\u308b\u306e\u3067\u3001\u57fa\u672c\u7684\u306bURL\u3067\u5236\u5fa1\u3067\u304d\u308b\u7bc4\u56f2\u3067\u3059\u3002\u3067\u3001\u3044\u308d\u3044\u308d\u8abf\u3079\u307e\u3057\u305f\u304c\u3001\u4e0b\u8a18\u3092\u53c2\u8003\u306b\u3057\u3066\u3001JASPIC(Java Authentication Service Provider Interface for Containers)\u3068\u3044\u3046JavaEE7\u4ed5\u69d8\u306b\u542b\u307e\u308c\u3066\u3044\u308b\u3082\u306e\u3092\u4f7f\u3063\u3066\u307f\u308b\u4e8b\u306b\u3057\u307e\u3057\u305f\u3002<br \/>\n<a href=\"http:\/\/arjan-tijms.omnifaces.org\/2012\/11\/implementing-container-authentication.html\" target=\"_blank\">http:\/\/arjan-tijms.omnifaces.org\/2012\/11\/implementing-container-authentication.html<\/a><br \/>\n \u3053\u3053\u306eSETP5\u306b\u3042\u308bServerAuthModule\u5b9f\u88c5\u306evalidateRequest\u306b\u8a8d\u8a3c\u51e6\u7406\u3092\u66f8\u304d\u8fbc\u3080\u5f62\u306e\u3088\u3046\u3067\u3059\u3002<br \/>\n\u4e0b\u8a18\u306e\u30b5\u30f3\u30d7\u30eb\u30bd\u30fc\u30b9\u3082\u53c2\u8003\u306b\u306a\u308a\u307e\u3057\u305f\u3002<br \/>\n<a href=\"https:\/\/github.com\/erik-wramner\/YubikeyAuth\/tree\/master\/yubi-jaspic-example\" target=\"_blank\">https:\/\/github.com\/erik-wramner\/YubikeyAuth\/tree\/master\/yubi-jaspic-example<\/a><\/p>\n<p>\u4f46\u3057\u3001WebLogic\u3067\u52d5\u304b\u3059\u5834\u5408\u306f\u3001web.xml\u306b\u3060\u3051\u8a2d\u5b9a\u3059\u308c\u3070\u3088\u3044\u3060\u3051\u3067\u306a\u304f\u3001weblogic.xml\u306b\u3082\u540c\u3058\u3088\u3046\u306a\u8a2d\u5b9a\u304c\u5fc5\u8981\u307f\u305f\u3044\u3067\u3059\u3002<\/p>\n<p>web.xml <\/p>\n<pre class=\"lang:xhtml decode:true \" title=\"web.xml\" >  &lt;security-role&gt;\r\n    &lt;description&gt;\u7ba1\u7406\u8005&lt;\/description&gt;\r\n    &lt;role-name&gt;Managers&lt;\/role-name&gt;\r\n  &lt;\/security-role&gt;\r\n  &lt;security-role&gt;\r\n    &lt;description&gt;\u5229\u7528\u8005&lt;\/description&gt;\r\n    &lt;role-name&gt;Users&lt;\/role-name&gt;\r\n  &lt;\/security-role&gt;\r\n  \r\n  &lt;security-constraint&gt;\r\n    &lt;web-resource-collection&gt;\r\n      &lt;web-resource-name&gt;manager page&lt;\/web-resource-name&gt;\r\n      &lt;url-pattern&gt;\/manage\/*&lt;\/url-pattern&gt;\r\n    &lt;\/web-resource-collection&gt;\r\n    &lt;auth-constraint&gt;\r\n      &lt;role-name&gt;Managers&lt;\/role-name&gt;\r\n    &lt;\/auth-constraint&gt;\r\n  &lt;\/security-constraint&gt;\r\n\r\n  &lt;security-constraint&gt;\r\n    &lt;web-resource-collection&gt;\r\n      &lt;web-resource-name&gt;user page&lt;\/web-resource-name&gt;\r\n      &lt;url-pattern&gt;\/user\/*&lt;\/url-pattern&gt;\r\n    &lt;\/web-resource-collection&gt;\r\n    &lt;auth-constraint&gt;\r\n      &lt;role-name&gt;Users&lt;\/role-name&gt;\r\n    &lt;\/auth-constraint&gt;\r\n  &lt;\/security-constraint&gt;<\/pre>\n<p>weblogic.xml<\/p>\n<pre class=\"lang:xhtml decode:true \" title=\"weblogic.xml\" >    &lt;wls:security-role-assignment&gt;\r\n      &lt;wls:role-name&gt;Managers&lt;\/wls:role-name&gt;\r\n      &lt;wls:principal-name&gt;Managers&lt;\/wls:principal-name&gt;\r\n    &lt;\/wls:security-role-assignment&gt;\r\n    \r\n    &lt;wls:security-role-assignment&gt;\r\n      &lt;wls:role-name&gt;Users&lt;\/wls:role-name&gt;\r\n      &lt;wls:principal-name&gt;Users&lt;\/wls:principal-name&gt;\r\n    &lt;\/wls:security-role-assignment&gt;\r\n<\/pre>\n<p>\u30c7\u30d7\u30ed\u30a4\u3059\u308b\u3068\u305d\u306e\u30a4\u30f3\u30b9\u30bf\u30f3\u30b9\u5168\u4f53\u306b\u5f71\u97ff\u3057\u3001\u958b\u767a\u74b0\u5883\u3067\u306f\u7ba1\u7406\u30b5\u30fc\u30d0\u3067\u52d5\u304b\u3057\u3066\u3044\u308b\u306e\u3067\u7ba1\u7406\u30b3\u30f3\u30bd\u30fc\u30eb\u306b\u5165\u308c\u306a\u304f\u306a\u308a\u307e\u3059\u3002\u3002<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u3000\u4eca\u3001\u4f01\u696d\u5185\u3067\u5c11\u4eba\u6570\u304c\u4f7f\u7528\u3059\u308bWEB\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u3092WebLogic\u3067\u52d5\u304b\u3059\u524d &hellip; <a href=\"https:\/\/esoro.jp\/?p=287\">\u7d9a\u304d\u3092\u8aad\u3080 <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":3,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"_links":{"self":[{"href":"https:\/\/esoro.jp\/index.php?rest_route=\/wp\/v2\/posts\/287"}],"collection":[{"href":"https:\/\/esoro.jp\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/esoro.jp\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/esoro.jp\/index.php?rest_route=\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/esoro.jp\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=287"}],"version-history":[{"count":0,"href":"https:\/\/esoro.jp\/index.php?rest_route=\/wp\/v2\/posts\/287\/revisions"}],"wp:attachment":[{"href":"https:\/\/esoro.jp\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=287"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/esoro.jp\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=287"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/esoro.jp\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=287"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}