Hi Chris, HiveMind Utilities project (http://hivetranse.sourceforg.net) also includes the "hivelock" modules for security management, including an interceptor that will throw an exception if the current user is not authorized to call the required method.
Cheers Jean-Francois -----Original Message----- From: Chris Chiappone [mailto:[EMAIL PROTECTED] Sent: Thursday, February 23, 2006 11:21 PM To: Tapestry List Subject: Security in Services best practices Hi, I was wondering what the best approach would be when trying to set permissions for users of my application to access certain services. I currently have an export to file service that I only want a certain user role to be able to perform. Because the service is decoupled I am not sure how I can obtain the role that the logged in user has from my ASO into the service. Any help would be appreciated. -- ~chris --------------------------------------------------------------------- To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED] --------------------------------------------------------------------- To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]