13.07.2015 Views

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

SHOW MORE
SHOW LESS
  • No tags were found...

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Configuring Server02In the Web Console, Server02 will be configured for incoming requests tosupport message layer authentication over SSL. Configuration for outgoingrequests is not relevant for this scenario. Follow the steps below to configureServer02:1. Configure Server02 for incoming connections. Start the AdministrativeConsole for Server02, then navigate to the <strong>Security</strong> -> AuthenticationProtocol section.2. Select CSIv2 Outbound Authentication.a. Enable Basic authentication, by selecting Supported.b. Disable Client Certificate Authentication by selecting Never.c. Disable Identity Assertion.3. Select CSIv2 Outbound Transport.Enable SSL by selecting SSL-Supported.Scenario 4: TCP/IP Transport using VPNThis scenario illustrates the ability to choose TCP/IP as the transport when it isappropriate to do so. In some cases, when two servers are on the same VPN, itmay be appropriate to select TCP/IP as the transport for performance reasonssince the VPN already encrypts the message.invocationcredential:user01VPNreceivedcredential:user01Juser01/userpwdmessage layerSSLtransport layertokenmessage layerTCP/IPtransport layerClient01Java clientServer01EJB serverServer02EJB serverFigure 6-7 Scenario 4: TCP/IP Transport using VPNChapter 6. Securing Java clients 117

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!