03.05.2015 Views

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Configuring <strong>WebSphere</strong> to use exact DN mapping<br />

The following steps will show you how to configure <strong>WebSphere</strong> Application<br />

Server to use Exact Distinguished Name (DN) mapping.<br />

1. Log in to the <strong>WebSphere</strong> Administration Console.<br />

2. Select <strong>Security</strong> -> User Registries -> LDAP.<br />

3. Select Advanced LDAP Settings on the LDAP page.<br />

4. Set the Certificate Map Mode to EXACT_DN in the Configuration panel.<br />

5. Make sure that the Certificate Filter field is empty.<br />

6. Click OK and save the configuration for <strong>WebSphere</strong>.<br />

7. Stop and restart the server to make the changes available.<br />

For testing, use the same steps described previously with the certificate filter<br />

option in “Testing the client side certificate” on page 296.<br />

You can follow the operation of the authentication if you have tracing enabled for<br />

security. You should be able to find in your trace.log file something similar to the<br />

following example.<br />

Example 10-6 trace.log<br />

...<br />

[10/14/02 19:39:38:318 EDT] 7a376025 > UOW=<br />

source=com.ibm.ws.security.registry.ldap.LdapRegistryImpl org=<strong>IBM</strong><br />

prod=<strong>WebSphere</strong> component=Application Server<br />

mapCertificate<br />

[10/14/02 19:39:38:318 EDT] 7a376025 > UOW=<br />

source=com.ibm.ws.security.registry.ldap.LdapRegistryImpl org=<strong>IBM</strong><br />

prod=<strong>WebSphere</strong> component=Application Server<br />

search<br />

[10/14/02 19:39:38:328 EDT] 7a376025 d UOW=<br />

source=com.ibm.ws.security.registry.ldap.LdapRegistryImpl org=<strong>IBM</strong><br />

prod=<strong>WebSphere</strong> component=Application Server<br />

DN: CN=manager01, O=itso<br />

...<br />

[10/14/02 19:39:38:348 EDT] 7a376025 d UOW=<br />

source=com.ibm.ws.security.registry.ldap.LdapRegistryImpl org=<strong>IBM</strong><br />

prod=<strong>WebSphere</strong> component=Application Server<br />

securityName = parm1=CN=manager01, O=itso<br />

[10/14/02 19:39:38:348 EDT] 7a376025 d UOW=<br />

source=com.ibm.ws.security.registry.ldap.LdapRegistryImpl org=<strong>IBM</strong><br />

prod=<strong>WebSphere</strong> component=Application Server<br />

attributes = parm1={uid=uid: manager01, objectclass=objectclass:<br />

inetOrgPerson, ePerson, organizationalPerson, person, top, cn=cn: Joe,<br />

manager01}<br />

300 <strong>IBM</strong> <strong>WebSphere</strong> <strong>V5.0</strong> <strong>Security</strong> Handbook

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!