-->
These old forums are deprecated now and set to read-only. We are waiting for you on our new forums!
More modern, Discourse-based and with GitHub/Google/Twitter authentication built-in.

All times are UTC - 5 hours [ DST ]



Forum locked This topic is locked, you cannot edit posts or make further replies.  [ 2 posts ] 
Author Message
 Post subject: Mandatory Validation
PostPosted: Wed May 20, 2009 10:54 am 
Newbie

Joined: Wed May 20, 2009 10:48 am
Posts: 1
Is this JSR intended to be used for security purposes? If so, it would be nice to see "Mandatory Validation". Similar to how Guice throws an error if you don't specify a binding for a dependency, it would be nice to have JSR 303 have a mandatory mode and throw an error if any field doesn't have a validator configured. This biggest problem we have with validation from a security point of view is we get 99% percent of the input validated, but miss one field which opens a security hole.

Thoughts?

Michael Bailey


Top
 Profile  
 
 Post subject: Re: Mandatory Validation
PostPosted: Mon Jun 22, 2009 1:47 pm 
Hibernate Team
Hibernate Team

Joined: Sun Sep 14, 2003 3:54 am
Posts: 7256
Location: Paris, France
Interesting idea. I think this is something an annotation processor could enforce. I am not sure this can reasonably be part of the spec itself though.

_________________
Emmanuel


Top
 Profile  
 
Display posts from previous:  Sort by  
Forum locked This topic is locked, you cannot edit posts or make further replies.  [ 2 posts ] 

All times are UTC - 5 hours [ DST ]


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum

Search for:
© Copyright 2014, Red Hat Inc. All rights reserved. JBoss and Hibernate are registered trademarks and servicemarks of Red Hat, Inc.