[TheServerSide Newsletter #10]
May 13, 2003 Newsletter Circulation: 130 000+ No. 10


 This newsletter sponsored in part by Novell
INTRODUCING NOVELL EXTEND APPLICATION SERVER 5.0 With the acquisition of SilverStream Software, Novell Inc. gained a world class J2EE Application Server complete with award winning development and deployment tools for Web Services and J2EE applications. In fact, Network Computing Magazine chose exteNd as the editor's choice for it's superior IDE and Web Services support. Download and enter to win a 256MB USB storage device. http://developer.novell.com/tss

In This Issue



Tales From TheServerSide
 o TSS Announces Novell exteNd Application Server Added to Cluster

Featured Articles
 o From the Trenches Series: db BausparenOnline
 o Understanding Tomcat Security Issues

Tech Talks
 o Sean Neville on Rich Internet Applications
 o Mark Hapner on What's New in J2EE 1.4

TMC Training Video
 o Training Video on Struts

TheServerSide Symposium
 o Apache, JBoss, OpenSymphony, Hibernate, Object Web Panel Debate

Key J2EE Industry News Headlines
 Some key headlines:
 o Novell launches exteNd Application Server 5
 o Gartner: IBM takes #1 Appserver marketshare position from BEA

This newsletter is transmitted twice a month. It is printer-friendly and available online



Tales From TheServerSide



TSS Announces Novell exteNd Application Server Added to Cluster

TheServerSide has added to its J2EE portability cluster, by launching an additional Novell exteNd Application Server server into the group (consisting of BEA WebLogic, Oracle9iAS, and Sun ONE Application servers). It is great to see the same code running on all of these platforms. Checkout info on the Novell port.

TheServerSide has yet again shown itself to be a great example of J2EE portability in action. It's a production system with heavy loads (over 3 million pageviews/month) that runs with the same J2EE application binaries deployed across different vendors servers. Each server is J2EE 1.3 compliant and runs TSS in a consistent fashion.


Featured Articles



From the Trenches Series: db BausparenOnline
By Bruce Tate

TheServerSide is pleased to present the first article from its 'From The Trenches Series', a collection of real-world applications, submitted by the TSS community. The db BausparenOnline application integrates with an existing mainframe and provides support to three distinct client sets. This article shows how the project was designed, built, and examines its various layers.


Understanding Tomcat Security Issues
Excerpted from the Apache Tomcat Security Handbook (Wrox)

'Understanding Tomcat Security', excerpted from the Apache Tomcat Security Handbook (Wrox), looks at the top ten web application vulnerabilities as listed by the Open Web Application Security Project. It goes over the proper installation of Tomcat as a service running under an unprivileged user account, how to use a local firewall to add additional layers of security to network traffic, and shows you how to minimize possible entry points for attacks by properly managing default applications and Contexts.



 This newsletter is sponsored in part by the JavaOne conference
2003 JAVAONESM CONFERENCE: June 10-13, 2003. The JavaOne conference is the source for the unparalleled opportunity to learn from the creators and foremost experts in Java™ technology. REGISTER by June 8 and SAVE $100 off the on-site price of $1,995. Register online today at java.sun.com/javaone/sf or call 888-886-8769.

Tech Talks



Sean Neville - JCP Executive Committee representative for Macromedia, EJB 2.0/J2EE 1.4 expert group member. Flash Remoting for J2EE/.NET architect.

Topic: Rich Internet Applications

Sean talks about Rich Internet Applications (RIAs), how they can be used to aggregate the business tier and enterprise applications using the client and looks at architectural approaches and technologies used for designing RIAs. He discusses how the J2EE Petstore was implemented in Flash, how the Flash Remoting product enables interoperability between J2EE and rich clients, and examines why vendors are trying to attract a new 'VB-style' group of developers. He also looks at changes that need to occur in the industry for RIAs to become mainstream.



Mark Hapner - Distinguished Engineer, J2EE architect, Sun Microsystems, Inc.

Topic: What's New in J2EE 1.4

Mark Hapner is the specificaion lead for J2EE 1.4 and is also Sun's representative to the Web Services Interoperability Organization. In this Hard Core Tech Talk, Floyd Marinescu interviews Mark about whats new in J2EE 1.4, technical issues surrounding the platform, and future directions. Some of the topics he discusses are enhancements to the Connector Architecture, EJB 2.1 MDBs, Web Services APIs such as JAX-RPC, and he also looks at various JSRs that didn't make it into the spec.




TMC Training Video



Training Video on Struts

This short video discusses where to place Struts in your Web application, looks at the Struts Controller, Model, and View, and provides an example of its usage. Owen Taylor, Senior Instructor, is seen teaching actual courseware from the J2EE Patterns course.





TheServerSide Symposium



Apache, JBoss, OpenSymphony, Hibernate, Object Web Panel Debate

For the first time ever, founders and chief architects of all the major enterprise open source java groups are getting together to discuss issues important to the Java community. Join Bill Burke (lead architect of JBoss 4), Mike Cannon-Brookes (founder of OpenSymphony group, Java blogs), Gavin King (architect of Hibernate), Vincent Massol (Apache Struts committer and Cactus founder), and Christophe Ney (president of ObjectWeb consortium) as they discuss quesitons such as the latest innovations open source is bringing to Java, what combinations of projects gives the ultimate J2EE development framework, how to choose between so many frameworks, open source licenses and revenue models, etc.

If you're thinking about benefiting from this incredible show, you should register by May 31st. If you register in May you will get the whole symposium for $1245 ($200 discount).




Key J2EE Industry Headlines


Novell launches exteNd Application Server 5

Novell exteNd Application Server 5 is now shipping. exteNd 5 is J2EE 1.3 certified and provides a Web services engine and tools, server failover, clustering and automatic server restart, rich GUI and command line tools, etc. The release provides a platform for Novell's exteNd Web app development suite, and will be bundled with NetWare 6.5 when it ships later this summer.


Unix Strikes Back in latest TPC-C Benchmark Results

IBM has managed to take UNIX (AIX) to the top of published TPC-C benchmark's non-clustered list. Running on BEA Tuxedo 8.0, IBM ran at 680,613 transactions per minute and with only half of the processors of the previous leader - HP Superdome with Com+ on Windows Server 2003. TPC Benchmark C is an on-line transaction processing (OLTP) benchmark.


Gartner: IBM takes #1 Appserver marketshare position from BEA

IBM has taken the No. 1 appserver market position away from rival BEA, according to a study to be released this week by Gartner dataquest. The study pegged IBM at 37%, BEA at 29%, with Sun and Sybase a distant third and fourth. "IBM gained market share of new-license revenue at the expense of BEA and others."


New Portal Launched: PatternsCentral.Com

ObjectVenture Inc has launched a new online community that aims to be "your center for all things patterns". PatternsCentral is a portal website and supporting e-newsletter aimed at the growing community of architects, designers, and developers using pattern-based development for enterprise and web-based applications.


Sun ONE Studio To Include JDO Again

Sun ONE Studio took out JDO support following a product rebranding in May 2002. Now it is going back in again thanks to a partnership with SolarMetric Inc. Kodo JDO will be a plug-in for the Studio IDE. Joe Keller, vice president of marketing for Java Web services and tools at Sun, said: "There was a request from our user base to go back to supporting JDO".


Borland Releases New Java Tools

Last week was a big week for Borland as they released their latest and greatest tools. They are shipping: JBuilder 9, Janeva (J2EE/CORBA/.NET integration tool), and C#Builder. JBuilder 9 has Web services support enhancements and a new integrated solution for developing mobile and wireless applications to run on many devices. It supports design, modeling and team development and also includes other new features such as two-way modeling; graphical debugger improvements; and automatic deployment for many J2EE servers.


ObjectWeb announces JOnAS 3.1 and Clustered JDBC

ObjectWeb open source consortium has announced the release of JOnAS 3.1 EJB server (now integrated with Axis), as well as Clustered JDBC (C-JDBC) an open-source database cluster middleware that allows any Java app to transparently access a cluster of databases through JDBC.






Unsubscribe


If you are receiving this newsletter it is because you signed up as a member of TheServerSide.com and elected to receive our newsletters. To unsubscribe from TheServerSide.com's bi-weekly newsletter, log on to TheServerSide and edit your user profile. Email webmaster@theserverside.com if you are having problems editing your profile.



This newsletter and contents are Copyright (c) 2002 The Middleware Company