13.07.2015 Views

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

SHOW MORE
SHOW LESS
  • No tags were found...

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

The products depicted on the picture above are:►►►►►►►Tivoli Access Manager’s WebSEALWebSeal is a security reverse proxy that is used to authenticate the user,create and maintain a session with the user and provide URL levelauthorization. It also hides the internal structure of Web resources throughURL mapping. WebSeal supports multiple types of authentication andimplements stepping up to a stronger authentication type if necessary.<strong>IBM</strong> HTTP ServerThe Tivoli Access Manager can protect any static content on the Web serverincluding the server itself, so that non-authenticated users will not be able tocommunicate with the Web server behind the security reverse proxy,WebSEAL.<strong>WebSphere</strong> Application Server V5This server runs a main application logic of the ITSOBank sample application.For passing credentials between multiple application servers, other<strong>WebSphere</strong> servers and Domino, <strong>WebSphere</strong> uses LTPA tokens.Lotus Domino Application ServerDomino Server runs a component of the ITSOBank sample application.<strong>WebSphere</strong> and Domino establish the Single Sign-On using LTPA tokens.SecureWay Directory ServerAccess Manager supports a number of LDAP directories. The <strong>IBM</strong>SecureWay LDAP Directory is shipped with the Tivoli Access Manager; itstores user information and user privileges, besides other applicationinformation.<strong>IBM</strong> DB2Internal systems are represented in our scenario by the application databasethat is stored on DB2 server.Tivoli Access ManagerTivoli Access Manager consists of the following runtime components:– Management ServerThe Management Server is used to manage the Access Manager securitypolicy. The Management Server receives updates from the console,Administration API or Administration command line interface.Chapter 11. <strong>Security</strong> in Patterns for e-business 363

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!