IyaSec Blog

Notes on application security, API security, identity, and API management from the field. Articles are also published on Medium. Browse the archive by topic instead — 124 subjects.

What is an XML Gateway?

  • DataPower
  • Network Security
  • SOA

An XML Gateway is an externally-facing DMZ tier of a web services platform. Generally, this DMZ tier will be facing the Internet, but it may simply be between business units or facing a leased line connecting one entity to another. It can be implemented using a software solution (such as web…

Read article: What is an XML Gateway?

JVM Heap & GC Tuning…

  • Garbage Collection
  • JVM Internals
  • Memory Management

So, obviously, I haven’t posted anything here in a while🙂. Life has been busy. Starting several months ago, I left my job of four years and began independent consulting. Among other things, this means that the variety of topics discussed on thinkmiddleware.com should be more varied. I’m also going…

Read article: JVM Heap & GC Tuning…

Servlet Container Authentication

  • Authentication
  • J2EE / Jakarta EE
  • HTTP

There are three required authentication mechanisms supported by a compliant Servlet Container: HTTP Basic Authentication, Form-based Authentication, and CLIENT_CERT authentication. There is a fourth authentication method, DIGEST, that isn’t used very often in my experience. This final…

Read article: Servlet Container Authentication

Summary of J2EE Specs

  • J2EE / Jakarta EE
  • Standards & Specs
  • Java

If you were ever looking for a summary of each version of the J2EE Spec, it can take a few minutes to find it. So, here is a summary. The J2EE Specification is actually collection of numerous different Java-based technology specifications.

Read article: Summary of J2EE Specs

Looking for something specific? Browse all 124 topics.