clone各种权限
别老想你的clone了 呵呵
我为什么一进后台管理,不一会,这里就会产生错误??怎么会是?
谁作为Visitor,谁又作为Visitable呢 ? ?
一个是用户类 ,一个是权限类 么?
JAAS你们知道吗,好像不错,不知道用在资源级别控制上的情况怎么样?
In addition, while there are many articles on authentication with JAAS [1], [2] , using the API for authorization is relatively undocumented [3]. This paper will show how to use JAAS to secure resources in an MVC architecture.
There are two points of integration with Struts. During the login process and when the client requests a resource from Struts (which will usually be a URL). At each of these points, the application should defer to JAAS classes to perform the action.
This paper will first examine the JAAS infrastructure and then explain how the integration outlined above took place.
http://www.mooreds.com/jaas.html