authentication and authorization


I have seen that the authentication and authorization implementation
is in work.

As you can see on the architecture plan this functionality is part
of the xmlBlaster.
Surely, the authentication ist nessecary for the xmlBlaster but wouldn't
be better to implement an extra process or server.
In this case you are able to put authentication on an extra hardware.
The authentication and authorization server should communicate with
the xmlBlaster and vice versa via IIOP.

What do you think about it?


