03.05.2015 Views

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Figure 12-18 Protected Object Properties show full Junction Name<br />

Creating ACLs<br />

The following procedure will create ACLs (Access Control List) for the ITSOBank<br />

Web components.<br />

1. Click ACL -> Create ACL from the Task LIst and in the Create ACL form<br />

which appears<br />

2. Enter against New ACL Name: ITSOBank, description: ITSOBank ACL and click<br />

the Create button from the center of the form to bring up the ACL Properties<br />

form. This shows one rule entry, the default permissions for sec_master. In a<br />

production environment, you would very carefully consider your security<br />

model before allowing this to remain, because this is exactly the kind of<br />

administrative back door which we discussed earlier.<br />

424 <strong>IBM</strong> <strong>WebSphere</strong> <strong>V5.0</strong> <strong>Security</strong> Handbook

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!