03.05.2015 Views

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

user request. If for some reason the user id passed by WebSEAL is not<br />

contained in the user registry being used by <strong>WebSphere</strong>, you will instead see an<br />

error. In this case, you need to check your <strong>WebSphere</strong> user registry to determine<br />

why that user ID cannot be found.<br />

Example 12-6 <strong>WebSphere</strong> security trace for TAI<br />

8/22/02 7:42:49:791 CDT] 277a2e5c Authenticatio d<br />

publicName:dirsrv01.itso.ral.ibm.com:389/tai_user<br />

[8/22/02 7:42:49:791 CDT] 277a2e5c Authenticatio d<br />

realm:dirsrv01.itso.ral.ibm.com:389;userName:tai_user<br />

[8/22/02 7:42:49:791 CDT] 277a2e5c Authenticatio d<br />

accessId:user:dirsrv01.itso.ral.ibm.com:389/cn=tai_user,o=itso<br />

[8/22/02 7:42:49:792 CDT] 277a2e5c WebAuthentica < basicAuthenticate<br />

[8/22/02 7:42:49:792 CDT] 277a2e5c WebSealTrustA d Successful authentication<br />

for validateEstablishedTrust.<br />

[8/22/02 7:42:49:792 CDT] 277a2e5c WebAuthentica d TrustAssociation has been<br />

validated successfully.<br />

[8/22/02 7:42:50:002 CDT] 277a2e5c WebSealTrustA > getAuthenticatedUsername<br />

[8/22/02 7:42:50:006 CDT] 277a2e5c WebSealTrustA < Exiting<br />

getAuthenticatedUsername: manager<br />

[8/22/02 7:42:50:006 CDT] 277a2e5c WebAuthentica d Username retrieved is<br />

[manager]<br />

[8/22/02 7:42:50:006 CDT] 277a2e5c WebAuthentica d Map credentials for manager.<br />

[8/22/02 7:42:50:074 CDT] 277a2e5c <strong>Security</strong>Serve > mapCredential<br />

[8/22/02 7:42:50:074 CDT] 277a2e5c <strong>Security</strong>Serve d Credential is a Trusted<br />

Credential<br />

...<br />

[[8/22/02 7:42:50:075 CDT] 277a2e5c Credential < getUserName() -> manager<br />

[8/22/02 7:42:50:075 CDT] 277a2e5c UserRegistryI > createCredential<br />

manager<br />

[8/22/02 7:42:50:076 CDT] 277a2e5c LdapRegistryI > createCredential<br />

manager<br />

[8/22/02 7:42:50:076 CDT] 277a2e5c LdapRegistryI > getUserDisplayName<br />

manager<br />

[[8/22/02 7:42:51:073 CDT] 277a2e5c LdapRegistryI d Found user<br />

cn=manager,o=itso<br />

...<br />

[8/22/02 7:42:51:654 CDT] 277a2e5c LTPAValidatio d LTPAValidationCache (cache<br />

enabled): validation = 181 millis<br />

[8/22/02 7:42:51:654 CDT] 277a2e5c Authenticatio > extractCredentialAttributes<br />

[8/22/02 7:42:51:654 CDT] 277a2e5c Authenticatio d<br />

publicName:dirsrv01.itso.ral.ibm.com:389/manager<br />

[8/22/02 7:42:51:654 CDT] 277a2e5c Authenticatio d<br />

realm:dirsrv01.itso.ral.ibm.com:389;userName:manager<br />

[8/22/02 7:42:51:654 CDT] 277a2e5c Authenticatio d<br />

accessId:user:dirsrv01.itso.ral.ibm.com:389/cn=manager,o=itso<br />

[8/22/02 7:42:51:655 CDT] 277a2e5c WebAuthentica < validate<br />

Chapter 12. Tivoli Access Manager 407

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!