Chapter 12. New Security Features of EAP 7
The security concepts exposed in Chapter 11, Securing the Application Server have been consolidated across several releases of the application server. Although in the near future they will be usable as a legacy solution to secure EAP7, some new projects are being actively developed by Red Hat engineers to provide a brand new security model.
In this chapter, we will introduce an elytron project, which is going to replace the current PicketBox and JAAS security model. Next, we will show you how to delegate security concerns of web applications to Red Hat Single Sign-On ( SSO ), which can centrally manage permissions for applications and services acting as an SAML or OpenID Provider.
We will cover the following topics in this chapter:
- An introduction to the new EAP security model
- The core building blocks of the elytron subsystem
- Creating realms and linking them to the new security domain
- Installing RH SSO and integrating it with EAP 7
- How to delegate...