03.05.2015 Views

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Item Cell Node Server Appl.<br />

CosNaming Roles<br />

Administrative Role mappings<br />

X<br />

X<br />

User to role mapping<br />

X<br />

J2C Authentication Data entries X (C)* X (A)**<br />

SSL Repertoire entries X (C)* X (A)**<br />

(C)* means that the item was configured on a particular level and it is available<br />

on a different one.<br />

(A)** means that the item is available on a particular level and was configured on<br />

a different level.<br />

Note:<br />

J2C Authentication Data Entries are also used in the Resource Adapter<br />

Settings.<br />

The SSL Repertoire entries are also used in the Web container security,<br />

CSIv2 and <strong>IBM</strong> SAS transport protocol security.<br />

Global security<br />

The global security settings for a cell are almost the same as the global security<br />

settings for a server (not being in a cell). The difference is that only LTPA is<br />

available as an authentication mechanism. The reason for this is that SWAM is<br />

not capable of passing credentials between multiple application servers, so we<br />

need an authentication mechanism that supports this feature; at this time, LTPA<br />

is the only one that provides this function. As an alternative, you can develop and<br />

use your own authentication mechanism; in future releases, Kerberos might<br />

provide this functionality.<br />

For all other global security settings refer to 10.2, “<strong>WebSphere</strong> Global <strong>Security</strong>”<br />

on page 235.<br />

SSL settings<br />

The SSL Repertoire entries are exactly the same as for a server (not being in a<br />

cell).<br />

The entries defined for a cell are synchronized between the application servers<br />

attached to the cell, so the entries are available for the whole cell or for individual<br />

servers; refer to the individual server settings shown later.<br />

340 <strong>IBM</strong> <strong>WebSphere</strong> <strong>V5.0</strong> <strong>Security</strong> Handbook

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!