Chapter 15. Security 485
Administrative users must authenticate to issue commands by using the following
command:
stopServer server1 -user wasadmin -password admin
For more information about the administrative console user role, see “Fine-grained
administrative security” on page 487.
Application users have no access to the operating system or the administrative console.
They can log on only to the application, typically by using a web browser. These users
need authorization to access the different parts of the application, as explained in
“Security roles” on page 489.
The user accounts for the administrative and application users are stored in a user registry,
such as in an LDAP server.
15.6 Authorization
Authorization is the process of chec