03.05.2015 Views

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Role<br />

Cos Naming Create<br />

Cos Naming Delete<br />

Description<br />

Users who have been assigned the<br />

CosNamingCreate role will be allowed to<br />

create new objects in the Name Space<br />

through such operations as JNDI<br />

createSubcontext, and perform<br />

CosNamingWrite operations. The<br />

special-subject AllAuthenticated is the<br />

default policy for this role.<br />

Users who have been assigned<br />

CosNamingDelete role will be able to<br />

destroy objects in the Name Space, for<br />

example using the JNDI<br />

destroySubcontext method, as well as<br />

perform CosNamingCreate operations.<br />

The special-subject AllAuthenticated is<br />

the default policy for this role.<br />

Note: The CosNaming roles are effective only when Global <strong>Security</strong> is<br />

enabled.<br />

Mapping a user to a CosNaming role<br />

The process of mapping a user to a CosNaming role is the same as for mapping<br />

users to the admin role. The difference is that you have to navigate to<br />

Environment -> Naming -> CORBA Naming Service Users from the <strong>Security</strong><br />

Center. The roles that you can apply to a user are also different.<br />

Figure 10-5 CosNaming Role to user mapping<br />

Chapter 10. Administering <strong>WebSphere</strong> security 243

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!