The Definitive Guide to Security in Jakarta EE Securing Java-based Enterprise Applications with Jakarta Security, Authorization, Authentication and More
Résumé
Refer to this definitive and authoritative book to understand the Jakarta EE Security Spec, with Jakarta Authentication & Authorization as its underlying official foundation. Jakarta EE Security implementations are discussed, such as Soteria and Open Liberty, along with the build-in modules and Jakarta EE Security third-party modules, such as Payara Yubikey & OIDC, and OmniFaces JWT-Auth.
The book discusses Jakarta EE Security in relation to SE underpinnings and provides a detailed explanation of how client-cert authentication over HTTPS takes place, how certifications work, and how LDAP-like names are mapped to caller/user names. General (web) security best practices are presented, such as not storing passwords in plaintext, using HTTPS, sanitizing inputs to DB queries, encoding output, and explanations of various (web) attacks and common vulnerabilities are included.
Practical examples of securing applications discuss common needs such as letting users explicitly log in, sign up, verify email safely, explicitly log in to access protected pages, and go direct to the log in page. Common issues are covered such as abandoning an authentication dialog halfway and later accessing protected pages again.
What You Will Learn
The book discusses Jakarta EE Security in relation to SE underpinnings and provides a detailed explanation of how client-cert authentication over HTTPS takes place, how certifications work, and how LDAP-like names are mapped to caller/user names. General (web) security best practices are presented, such as not storing passwords in plaintext, using HTTPS, sanitizing inputs to DB queries, encoding output, and explanations of various (web) attacks and common vulnerabilities are included.
Practical examples of securing applications discuss common needs such as letting users explicitly log in, sign up, verify email safely, explicitly log in to access protected pages, and go direct to the log in page. Common issues are covered such as abandoning an authentication dialog halfway and later accessing protected pages again.
What You Will Learn
- Know what Jakarta/Java EE security includes and how to get started learning and using this technology for today's and tomorrow's enterprise Java applications
- Secure applications: traditional server-side web apps built with JSF (Faces) as well as applications based on client-side frameworks (such as Angular) and JAX-RS
- Work with the daunting number of security APIs in Jakarta EE
- Understand how EE security evolved
Spécifications produit
Contenu
Langue
en
Version
Broché
Date de sortie initiale
15 avril 2022
Nombre de pages
638
Illustrations
Avec illustrations
Personnes impliquées
Informations sur le fabricant
Nom du fabricant
Springer Nature Customer Service Center GmbH
Adresse du fabricant
- 69115 - - DE
Adresse électronique du fabricant
ProductSafety@springernature.com
Informations sur le fabricant
Les informations du fabricant ne sont actuellement pas disponibles
Autres spécifications
Hauteur de l'emballage
38 mm
Hauteur du produit
41 cm
Largeur d'emballage
182 mm
Largeur du produit
178 mm
Livre d‘étude
Non
Longueur d'emballage
254 mm
Longueur du produit
254 mm
Poids de l'emballage
1203 g
Édition
1st ed.
EAN
EAN
9781484279441
Sécurité des produits
Opérateur économique responsable dans l’UE
Vous trouverez cet article :
Livre, ebook ou livre audio ?
Disponibilité
Langue
Type de livre
Des documents
Commentaires
Pas encore d'avis
Choisissez la version souhaitée
Choisissez votre version
Économie de 4 %
Attendu dans environ 3 semaines
Livraison comprise avec bol
Retrait possible dans un point-relais bol
30 jours de réflexion et retour gratuit via my bol
Garantie légale via bol
Service client 24h/24



