IyaSec Blog

Notes on application security, API security, identity, and API management from the field. Articles are also published on Medium. Browse the archive by topic instead — 124 subjects.

SOA Specs Visualized

  • SOA
  • SOAP
  • TLS / SSL

In a previous blog post, I listed a number of SOA Specs and Security Specs that I thought were important to be familiar with when working with DataPower and other SOA technologies. In this post, I made a quick (and dirty) Visio diagram that I tend to draw up on a whiteboard when I’m at a new client…

Read article: SOA Specs Visualized

Active Directory Return Codes

  • Active Directory
  • DataPower
  • LDAP

While working with DataPower and Active Directory (acting as the User Repository) I have often run into situation where AD returns an LDAP error code 49 plus a sub-code in the error string that is unique to AD. The sub-code can be very useful to troubleshooting, if you know what it means.

Read article: Active Directory Return Codes

JBoss and LTPAv2 support

  • JBoss
  • Speaking
  • Integration

I’ve been at a couple of different client sites where there was a heavy IBM product presence, the use of IBM’s proprietary token format-LTPA2, and the need for a non-IBM technology such as JBoss EAP. Given the nature of the LTPA2 technology (IBM proprietary protocol), there isn’t any direct support…

Read article: JBoss and LTPAv2 support

JBoss World 2012 Session–Trusted Security with JBoss Enterprise Application Platform

  • JAAS
  • JBoss
  • Speaking

It’s been a few weeks since I have posted any updates. I started a new project at the beginning of June; it always takes a few weeks to get up to speed on an extended project. Integrating the IBM Tivoli Security stack and JBoss EAP was the subject of my JBoss World 2012 presentation.

Read article: JBoss World 2012 Session–Trusted Security with JBoss Enterprise Application Platform

Looking for something specific? Browse all 124 topics.