IyaSec Blog

Notes on application security, API security, identity, and API management from the field. Articles are also published on Medium. Browse the archive by topic instead — 124 subjects.

JBoss and LTPAv2 support

  • JBoss
  • Speaking
  • Integration

I’ve been at a couple of different client sites where there was a heavy IBM product presence, the use of IBM’s proprietary token format-LTPA2, and the need for a non-IBM technology such as JBoss EAP. Given the nature of the LTPA2 technology (IBM proprietary protocol), there isn’t any direct support…

Read article: JBoss and LTPAv2 support

JBoss World 2012 Session–Trusted Security with JBoss Enterprise Application Platform

  • JAAS
  • JBoss
  • Speaking

It’s been a few weeks since I have posted any updates. I started a new project at the beginning of June; it always takes a few weeks to get up to speed on an extended project. Integrating the IBM Tivoli Security stack and JBoss EAP was the subject of my JBoss World 2012 presentation.

Read article: JBoss World 2012 Session–Trusted Security with JBoss Enterprise Application Platform

DataPower Appliances & HSMs

  • DataPower
  • HSMs
  • Key Management

I’ve been in a couple of shops that have used the HSM module option of DataPower for FIPS 140-2 v2 or v3 compliance. An HSM is a Hardware Security Module. My understanding is that there is a short list of IBM customers that are using this technology. I thought collecting all the information and…

Read article: DataPower Appliances & HSMs

JBoss World 2012 Session…

  • JBoss
  • Speaking
  • Java

I will be presenting at JBoss World 2012 in Boston the last week of June. I’ll be presenting with Anil Saldana on JBoss Security, PicketLink, and Identity Management, JBoss Security Architect. A link to the description can be found here. The original abstract:

Read article: JBoss World 2012 Session…

Looking for something specific? Browse all 124 topics.