HN.zip

Apache Shiro security framework releases 3.0.0

44 points by lprimak - 10 comments
zipy124 [3 hidden]5 mins ago
For those like me who hadn't heard of this here is Apache's own product description for context:

Apache Shiro™ is a powerful and easy-to-use Java security framework that performs authentication, authorization, cryptography, and session management. With Shiro’s easy-to-understand API, you can quickly and easily secure any application – from the smallest mobile applications to the largest web and enterprise applications.

forkerenok [3 hidden]5 mins ago
In my junior-to-mid days (ca. 2010) Apache Shiro seemed like a breath of fresh air compared to Spring Security in terms of ease of integration.

Good to see it's still around.

Frieren [3 hidden]5 mins ago
I think that many people on startups miss this part of development, robust stable products that do what is expected from them.

Most companies software should not move fast and break things but it should be stable, provide the functionality that their users require and stability is a great asset.

Apache software is reliable in a way that many modern things are not(looking at you platforms like Android, Facebook, etc.).

mistic92 [3 hidden]5 mins ago
I have not heard this name for a long time
iririririr [3 hidden]5 mins ago
Java the language is so good. too bad the entire ecosystem is worse than brain dead. overload controlled by xmls scattered all over the filesystem, most read at run time. the mvn-gradle-mvn-gradle-mvn-... frustration and migration (literal) circle. the O.G. supply chain attacker build systems (which doesn't even help actually getting dependencies). everything is so bad. but at least com.java.naming.reverse.the.resolved.they now!
moondowner [3 hidden]5 mins ago
> xmls scattered all over the filesystem

is this comment from 2015?

With e.g. Spring Boot and Gradle you can have large projects with zero xml files needed. That has been the case for years.

kitd [3 hidden]5 mins ago
With Polyglot Maven, you don't even need it in Maven either!

https://github.com/takari/polyglot-maven

throw1234567891 [3 hidden]5 mins ago
Because the mountain of toml and yaml files is sooo much better.
khurs [3 hidden]5 mins ago
Your comment isn't relevant to the discussion, as the article is not about the merits of the language, but merely a Java Security Framework.
vips7L [3 hidden]5 mins ago
Their comment is also wildly wrong and outdated by two decades.