13.07.2015 Views

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

SHOW MORE
SHOW LESS
  • No tags were found...

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Configuring <strong>WebSphere</strong> to use exact DN mappingThe following steps will show you how to configure <strong>WebSphere</strong> ApplicationServer to use Exact Distinguished Name (DN) mapping.1. Log in to the <strong>WebSphere</strong> Administration Console.2. Select <strong>Security</strong> -> User Registries -> LDAP.3. Select Advanced LDAP Settings on the LDAP page.4. Set the Certificate Map Mode to EXACT_DN in the Configuration panel.5. Make sure that the Certificate Filter field is empty.6. Click OK and save the configuration for <strong>WebSphere</strong>.7. Stop and restart the server to make the changes available.For testing, use the same steps described previously with the certificate filteroption in “Testing the client side certificate” on page 296.You can follow the operation of the authentication if you have tracing enabled forsecurity. You should be able to find in your trace.log file something similar to thefollowing example.Example 10-6 trace.log...[10/14/02 19:39:38:318 EDT] 7a376025 > UOW=source=com.ibm.ws.security.registry.ldap.LdapRegistryImpl org=<strong>IBM</strong>prod=<strong>WebSphere</strong> component=Application ServermapCertificate[10/14/02 19:39:38:318 EDT] 7a376025 > UOW=source=com.ibm.ws.security.registry.ldap.LdapRegistryImpl org=<strong>IBM</strong>prod=<strong>WebSphere</strong> component=Application Serversearch[10/14/02 19:39:38:328 EDT] 7a376025 d UOW=source=com.ibm.ws.security.registry.ldap.LdapRegistryImpl org=<strong>IBM</strong>prod=<strong>WebSphere</strong> component=Application ServerDN: CN=manager01, O=itso...[10/14/02 19:39:38:348 EDT] 7a376025 d UOW=source=com.ibm.ws.security.registry.ldap.LdapRegistryImpl org=<strong>IBM</strong>prod=<strong>WebSphere</strong> component=Application ServersecurityName = parm1=CN=manager01, O=itso[10/14/02 19:39:38:348 EDT] 7a376025 d UOW=source=com.ibm.ws.security.registry.ldap.LdapRegistryImpl org=<strong>IBM</strong>prod=<strong>WebSphere</strong> component=Application Serverattributes = parm1={uid=uid: manager01, objectclass=objectclass:inetOrgPerson, ePerson, organizationalPerson, person, top, cn=cn: Joe,manager01}300 <strong>IBM</strong> <strong>WebSphere</strong> <strong>V5.0</strong> <strong>Security</strong> Handbook

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!