Pro Spring Security

Pro Spring Security

by Carlo Scarioni

360 pages· 2013· ISBN 9781430248194

Browse books you can read free on Readfeed

No club is reading this yet — be the first to start one

Start a club free
About
Security is a key element in the development of any non-trivial application. The Spring Security Framework provides a comprehensive set of functionalities to implement industry-standard authentication and authorization mechanisms for Java applications. Pro Spring Security will be a reference and advanced tutorial that will do the following: Guides you through the implementation of the security features for a Java web application by presenting consistent examples built from the ground-up. Demonstrates the different authentication and authorization methods to secure enterprise-level applications by using the Spring Security Framework. Provides you with a broader look into Spring security by including up-to-date use cases such as building a security layer for RESTful web services and Grails applications. What you’ll learn What the basics of securing a Java application, including core security concepts and the step-by-step configuration to include the Spring Security Framework in your web application What tools are available in Spring security to provide login and logout capabilities, with add-ons such as remember-me and password change functionalities. What are the types of authentication mechanisms tailored for enterprise-level Java applications, including LDAP, the Central Authentication Service, OpenID and X.509. How to dive into each of the application layers to control user access to the different architectural elements of your Java application. You will first apply authorization control to each of the components of the Model-View-Controller tier. How to work with Domain Objects and RESTful web services in our authorization queue in order to fully secure our application by using Access Control Lists, along with Object Level and Method Level authorization. How to explore the powerful Grails framework and how to use Spring security in the context of a Groovy on Grails application. You will earn about the core security plugin and others such as OpenID, Facebook and Twitter authentication. Who this book is for This book is for Java and Grails developers who would like to secure their applications easily by applying industry’s best practices. I assume a fair knowledge of Java and a basic knowledge of Spring Dependency Injection. Table of Contents1. The Scope of Security 2. Introducing Spring Security 3. Spring Security Architecture and Design 4. Web Security 5. Securing the Service Layer 6. Configuring Alternative Authentication Providers 7. Business Objects Security with ACLs 8. Customizing and Extending Web Security 9. Integrating Spring Security with Other Frameworks and Languages

Discuss Pro Spring Security with other readers

Join or start a book club for Pro Spring Security on Readfeed. Live chat, shared reading progress, and AI discussion questions — free to get started.

Frequently asked questions

How do I join a book club for Pro Spring Security?

Sign up free on Readfeed, then browse public clubs or start your own club with Pro Spring Security as the current read. Invite friends with a share link and discuss together with live chat and AI discussion questions.

Can I discuss Pro Spring Security with other readers online?

Yes. Readfeed book clubs let you chat live, share progress, and join discussions about Pro Spring Security with readers worldwide — whether your club is virtual, in-person, or hybrid.

Is Readfeed free?

Yes. Creating an account and joining book clubs is free. Sign up to find readers who love the same books and start discussing today.