相關主題
商品描述
Security is a key element in the development of any non-trivial application. The Spring Security Framework provides a comprehensive set of functionalities to implement industry-standard authentication and authorization mechanisms for Java applications. Pro Spring Security will be a reference and advanced tutorial that will do the following: Guides you through the implementation of the security features for a Java web application by presenting consistent examples built from the ground-up. Demonstrates the different authentication and authorization methods to secure enterprise-level applications by using the Spring Security Framework. Provides you with a broader look into Spring security by including up-to-date use cases such as building a security layer for RESTful web services and Grails applications. What you'll learn What the basics of securing a Java application, including core security concepts and the step-by-step configuration to include the Spring Security Framework in your web application What tools are available in Spring security to provide login and logout capabilities, with add-ons such as remember-me and password change functionalities. What are the types of authentication mechanisms tailored for enterprise-level Java applications, including LDAP, the Central Authentication Service, OpenID and X.509. How to dive into each of the application layers to control user access to the different architectural elements of your Java application. You will first apply authorization control to each of the components of the Model-View-Controller tier. How to work with Domain Objects and RESTful web services in our authorization queue in order to fully secure our application by using Access Control Lists, along with Object Level and Method Level authorization. How to explore the powerful Grails framework and how to use Spring security in the context of a Groovy on Grails application. You will earn about the core secu
商品描述(中文翻譯)
安全性是任何非平凡應用程式開發中的關鍵元素。Spring Security Framework 提供了一套全面的功能,以實現 Java 應用程式的行業標準身份驗證和授權機制。《Pro Spring Security》將成為一本參考書和進階教程,將執行以下內容:引導您通過從零開始構建的一致範例來實現 Java 網頁應用程式的安全功能。展示使用 Spring Security Framework 來保護企業級應用程式的不同身份驗證和授權方法。通過包括最新的使用案例,例如為 RESTful 網路服務和 Grails 應用程式構建安全層,為您提供更廣泛的 Spring Security 觀點。
您將學到的內容:
- Java 應用程式安全的基本知識,包括核心安全概念以及逐步配置以將 Spring Security Framework 包含在您的網頁應用程式中的步驟。
- Spring Security 中可用的工具,以提供登錄和登出功能,並附加如「記住我」和密碼變更功能。
- 為企業級 Java 應用程式量身定制的身份驗證機制類型,包括 LDAP、中央身份驗證服務、OpenID 和 X.509。
- 如何深入每個應用程式層,以控制用戶對 Java 應用程式不同架構元素的訪問。您將首先對模型-視圖-控制器層的每個組件應用授權控制。
- 如何在授權隊列中處理域對象和 RESTful 網路服務,以便通過使用訪問控制列表以及對象級和方法級授權來完全保護我們的應用程式。
- 如何探索強大的 Grails 框架,以及如何在 Groovy on Grails 應用程式的上下文中使用 Spring Security。您將學習核心安全性。