1. Administering System Security
2. Administering User Security
3. Administering Message Security
4. Administering Security in Cluster Mode
5. Managing Administrative Security
6. Running in a Secure Environment
Determining Your Security Needs
Hire Security Consultants or Use Diagnostic Software
Installing GlassFish Server in a Secure Environment
Enable the Secure Administration Feature
Procedure To Remove an Installed Component
Remove Services You Are Not Using
Securing the GlassFish Server Host
If your applications can run on the Web Profile, use that instead of the Full Platform.
Java EE 6 introduced the concept of profiles. A profile is a collection of Java EE technologies and APIs that address specific developer communities and application types.
The following profiles are implemented through the distributions of GlassFish Server:
Full Platform –The full Java EE platform is designed for developers who require the full set of Java EE APIs for enterprise application development, and is installed when you install GlassFish Server. This profile is also installed as part of the Java EE 6 SDK installation.
Web Profile –This profile contains Web technologies that are a subset of the full Java platform, and is designed for developers who do not require the full set of Java EE APIs. This profile is also installed with Java EE 6 Web Profile SDK.
For the list of APIs in each profile, see Java EE 6 Standards Support in Oracle GlassFish Server 3.1-3.1.1 Release Notes.