String messageLayer = "HttpServlet";
boolean isValid = sam.isValid(messageInfo, new Subject(), messageLayer, appContext, cbh);
if (isValid) {
log.debugf("JASPI validation for unprotected request context %s succeeded", request.getServletPath());
sam.secureResponse(messageInfo, new Subject(), messageLayer, appContext, cbh);
}
else {
// just log an error - this situation indicates a problem with the JASPI implementation but the call is
// safe to proceed to the unprotected resource.
log.errorf("JASPI validation for unprotected request context %s failed", request.getServletPath());