03.05.2015 Views

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

properties. Requires com.ibm.CORBA.loginUserid property to be set and<br />

CSIv2 message layer authentication in use.<br />

► com.ibm.CORBA.keyFileName (path to keyfile /<br />

/properties/wsserver.key) - determines the location of the<br />

key file that contains a list of realm/userid/password combinations. Used<br />

when the com.ibm.CORBA.loginSource property is set to key file.<br />

► com.ibm.CORBA.loginTimeout (an integer within the range 0 and 600 / 300) -<br />

determines the amount of time, in seconds, that the login prompt will be<br />

available before the login will be considered invalid.<br />

The SSL configuration options are listed below.<br />

► com.ibm.ssl.protocol (SSL, SSLv2, SSLv3, TLS, TLSv1 / SSL) - determines<br />

which variety of the SSL and TLS protocols are used to perform<br />

transport-layer encryption.<br />

► com.ibm.ssl.keyStoreType (JKS, JCEK, PKCS12 / JKS) - determines the<br />

format of the SSL key store file.<br />

► com.ibm.ssl.keyStore (path to key store /<br />

/etc/DummyClientKeyFile.jks) - determines the location of<br />

SSL key store file, which has used personal certificates and private keys.<br />

Dummy client and server key stores files are provided to aid development of<br />

applications that use key stores, without the need to generate keys or create<br />

a Certification Signing Request (CSR).<br />

► com.ibm.ssl.keyStorePassword (the key store password / default password<br />

for DummyClientKeyFile.jks) - determines the password with which the key<br />

store file is protected.<br />

► com.ibm.ssl.trustStoreType (JKS, JCEK, PKCS12 / JKS) - determines the<br />

format of the SSL key trust file.<br />

► com.ibm.ssl.trustStore (path to trust store /<br />

/etc/DummyClientTrustFile.jks) - determines the location<br />

of SSL key trust file.<br />

► com.ibm.ssl.trustStorePassword (the key trust password / default password<br />

for DummyClientTrustFile.jks) - determines the password with which the key<br />

trust file is protected.<br />

► com.ibm.CORBA.standardClaimQOPModels (low, medium, high / high) -<br />

determines the quality of protection (in other words, the security level). If the<br />

server and client values differ then the highest value will be chosen and the<br />

connection will be initialized with this QOP property. A list of supported<br />

ciphers for each level of QOP are provided in the InfoCenter.<br />

Chapter 6. Securing Java clients 105

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!