WildFly Elytron 1.0.0.Alpha3 发布了,获取地址: http://repo1.maven.org/maven2/org/wildfly/security/wildfly-elytron/1.0.0.Alpha3/ WildFly Elytron 为应用服务器提供对 SASL 和 HTTP 认证机制,用来加强服务器原本的安全。包括提供不可重用的密码认证。该版本主要是允许管理员可以定义选择 SASL 机制时的策略,详细功能点包括: Ability to specify protocol passed into the mechanism. Ability to specify server-name passed into the mechanism. Definition of properties to pass into mechanism for available mechanism evaluation and mechanism creation. Filtering of mechanisms by name. Filtering of mechanisms by name and provider. Mechanism loading from a Provider[] Service loader based mechanism loading from a provided ClassLoader. Mechanism filtering based on supported credentials. 其他改进记录: [ELY-247] - NullPointerException in SecurityProviderSaslServerFactory (Not all providers return services) [ELY-227] - Add attribute mapping to Jdbc Security Realm [ELY-175] - SASL mechanism availability should take into account credential support. [ELY-189] - Support One-Time-Password SASL Mechanism [ELY-197] - Add mechanism selection policies to the security domains. [ELY-237] - Make it possible to configure the realm used on the client [ELY-238] - Recognise realm callback on digest server, and make authorize callback come last [ELY-239] - Make Anonumous auth set the anonymous principal name [ELY-242] - Delegating SaslServerFactory supporting properties [ELY-250] - Release WildFly Elytron 1.0.0.Alpha3 [ELY-33] - Identity Loading [ELY-198] - Allow the association of Provider[] with a security domain and add support for mechanism loading. [ELY-219] - Process subject roles in JaasAuthorizationIdentity [ELY-223] - Add tests for the filesystem-backed realm [ELY-244] - The properties map in the sasl factories should be Map not Map [ELY-246] - Add github references to the pom 下一个版本是 1.0 Alpha4,将提供 HTTP 认证的新 API 以及相应策略。 WildFly Elytron 1.0.0.Alpha3 发布下载地址