13.07.2015 Views

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

SHOW MORE
SHOW LESS
  • No tags were found...

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

<strong>Security</strong> can be applied at two levels:► Enable gateway-level authentication► Enable operation-level authorizationEnable gateway-level authenticationProviding gateway-level authentication is actually nothing more than protectingthe URLs /axisengine and /soaprpcrouter with HTTP Basic Authentication. TheseURLs are of the channel application wsgwsoap1.ear and wsgwsoap2.ear. Weneed to modify the web.xml files of these EAR files. Extract EAR files, againextract wsgwsoap1.war, wsgwsoap2.war files and finally extract web.xml files tomodify.Example 7-5 BASIC security enabling for wsgwsoap1.ear and wsgwsoap2.earSOAP Entry Servlets/axisengine/soaprpcrouteryour role name - for example "meterable"BASICyour realm name - for example "WSGW Metered AccessArea"your security role - for example "WSGW meterablerole"your role nameMake sure to enable Global <strong>Security</strong> for HTTP Basic Authentication in<strong>WebSphere</strong> Application Server using the Admin Console as mentioned in “HTTPBasic Authentication” on page 143Note: Make a copy of the wsgwsoap1.ear and wsgwsoap2.ear beforemodifying them for enabling gateway-level authentication.156 <strong>IBM</strong> <strong>WebSphere</strong> <strong>V5.0</strong> <strong>Security</strong> Handbook

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!