Could someone tell me what authentication/security frameworks are used in Marketcetera? It would also be very helpful if someone could explain how it's utilized in the ORS/Photon client. I browsed thorough the developer guides, but was unable to find anything.
Authentication is done via JAAS in the ORS over Apache CXF WebServices and ActiveMQ JMS. Authorization is somewhat simplistic in the Community (open-source) version of the product. Essentially, a user is a super-user or he isn't. If he's a super-user, he can see positions and orders from all users. If he isn't, he can see only his own.