Security History

Arjan Tijms, Teo Bais, Werner Keil · Apress eBooks · 2022

This chapter describes the history of security in Jakarta EE, starting from its early conception and ending where we are today at the moment of writing. We’ll take a look at how the security APIs themselves evolved, how various frameworks were created in response to restrictions and shortcomings in Jakarta EE security APIs, and who some of the people were that were involved in this. Note that we’ll be mostly using the term “EE” throughout this chapter, even for those moments in time where it was called “Java 2 Enterprise Edition (J2EE),” or “Java EE.” Likewise we’ll be using Jakarta Authentication for the moment in time where it was called “JMAC” (Java Message Authentication SPI for Container(s)) or JASPIC (Java Authentication SPI for Containers) and use “Jakarta Authorization” for when it was called JACC (Jakarta Authorization Contract for Containers).

Read the paper · More papers on PaperTik