Skip to main content

ADF Servlet Filter

This blog is to guide you how you can filter the requests and add your custom checks in ADF application.

Follow below steps to create/configure a Servlet Filter in your ADF/Webcenter application.

1. From new wizard select Servlet and select Servlet Filter





2. Click on next


3. Enter the name of Servlet filter and package


4. Map to Servlet or JSP radio button should be selected and it is default selection.


5. Click on finish and you will get a servlet filter created.


This is the class generated after you click finish, it is having init, destroy and doFilter methods. 
We will write our logic in doFilter method. This will be called whenever a Servlet or jsp page request arrive to application.   


As we created servlet filter with ADF steps so it has added our filter entry in web.xml file which is a mandate to work our filter. 
We can create other filters also but we must register it in web.xml file.


We can mention servlet initialization parameter when we are configuring our ServletFilter or after configuring also and same parameters can  be used.
Main purpose of such servlet filters is to fix security issues, work on application navigation control, validation of XSS and much more.

I added some code in doFilter method. here we can check for session timeout, or any attacks from other domain etc.


Based on your validation/requirement, you can force it inside this method(doFilter) and navigate your application to desired page by setting response value. In example i have set value of initialization parameter to response variable which was added in web.xml while initializing the servlet Filter. 

Comments

Popular posts from this blog

Oracle ADF Interview questions

Why ADF ?     Oracle ADF (Application Development Framework) is state of the art technology to rapidly build enterprise application. ADF is a mature J2EE development framework and many other products under Oracle Fusion Middleware stack are build upon ADF 11g. ADF provides variety of inbuilt components that minimizes the need to write code allowing users to focus more on features and business aspects of the application. With WebCenter and SOA plugins, we can also integrate WebCenter Services and SOA into your application making it rich and extensible. Explain about JSF lifecycle ? The six phases of the JSF application lifecycle are as follows (note the event processing at each phase): -Restore view -Apply request values; process events -Process validations; process events -Update model values; process events -Invoke application; process events -Render response Immediate=true : A command button that does not provide ...

The file store "WLS_DIAGNOSTICS" could not be opened

WLS_DIAGNOSTIC ERROR weblogic.store.PersistentStoreException: [Store:280073]The file store "WLS_DIAGNOSTICS" could not be opened because it contained a file with the invalid version 1. A file of version 2 was expected. When you get this error while running your application on internal weblogic server delete the following file WLS_DIAGNOSTICS000000.DAT search the file in following path C:\jdev_work\system11.1.1.5.37.60.13\DefaultDomain this file is in DefaultDomain folder of your jdev. and delete the WLS_DIAGNOSTICS000000.DAT file . and run your applicatuon

Overview Editor for bc4j.xcfg

This is used to customize the configuration settings for the application pool, connection pool, and transactions. Select the Application Module, then select a configuration from the Configurations list. You can specify a Default Configuration from the dropdown to use with selected application module. Edit the name of the configuration in Details. Its having 3 tabs 1.Database and Scalability 2. Properties 3. Custom Properties Database and Scalability Tab : In Database and Scalability you can mention the JDBC data source definition for each application module. You can choose to connect to a JDBC data source or to a JDBC URL.The default connection type is the default data source. A data source is a vendor-independent encapsulation of a database server connection on the application server. 1. Data sources ( JNDI name) offer advantages over a JDBC URL connection because the data source can be tuned, reconfigured, or remapped without changing the deployed application. 2. JDB...