Re: sfCodeBase from a password protected http site

Steve Loughran <[email protected]>
Newsgroups gmane.comp.java.smartfrog.user
Message-ID <[email protected]>
Goldsack, Patrick wrote:
> Sanjay,
> 
> Password-based authentication is not currently supported, we would need
> to add this capability. 
> 
> However, this alone would not be particularly secure since the
> passwords, etc, would be sent in clear. It would not also not, as you
> point out, protect the jar file from being read (though it would be
> protected from tampering so long as the security was switched on and the
> jar file signed). You would need an ssl session to protect the
> visibility of the jar file and passwords. So if the jar file contains
> passwords etc. held in clear - you would need to do this, or use some
> other secured mechanism to download the file locally then use a file://
> url.
> 
> Patrick
> 

I note that the SOAP-based CDL deployment API, which I am trying to get 
working for may, does offer

-upload of JAR files to the far end; you get back a URL that you can 
then feed in to other descriptors
-long haul connectivity over port 80

Sanjay,
it sounds like long-haul upload and deployment is what you are trying to 
do. Is this right? I do not have anything I consider usable yet, but 
should by the summer have a way of doing remote deployments using SOAP.

-steve


-------------------------------------------------------
This SF.Net email is sponsored by xPML, a groundbreaking scripting language
that extends applications into web and mobile media. Attend the live webcast
and join the prime developer group breaking into this new coding territory!
http://sel.as-us.falkag.net/sel?cmd=lnk&kid=110944&bid=241720&dat=121642
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.