13.07.2015 Views

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Tip from a battle scarred veteran:When using the native installation method for Access Manager and installingAccess Manager components on the same system as the <strong>IBM</strong> DirectoryServer, you must first install the GSKIT component manually. This step isrequired because the GSKIT component supplied with the <strong>IBM</strong> DirectoryServer is at a lower level than the level required for Access Manager. If you donot perform a native installation of the Access Manager GSKIT componentbefore beginning the native installation of the <strong>IBM</strong> Directory Server, then youwill not be able to perform installation of any Access Manager components onthat system without uninstalling the <strong>IBM</strong> Directory Server and all of itscomponents. For details on performing a native installation of the GSKITcomponent for Access Manager, refer to the Access Manager for eBusinessV3.9 Base Installation Guide.For those of you rereading this section, it is safe to assume that you did notread the above tip the first time. It is Friday night, and while your officeco-workers are enjoying happy hour at your favorite local establishment, youare working alone in the lab. So now you are not only working late and missinghappy hour, you are also missing out on the latest office gossip, and won’thave any idea what anyone is talking about Monday. Take heart, however. Iam quite sure that in the future you will pay very close attention to tips inRedbooks, and you won’t miss happy hour again.In order to configure <strong>WebSphere</strong> for access to the <strong>IBM</strong> Directory Server, we mustfirst define a user entry for <strong>WebSphere</strong> to use when binding to the directory. Theuser entry must also have permission to perform directory searches on the areasof the LDAP tree where <strong>WebSphere</strong> user and group entries will be stored, andallow it to populate these entries in the directory. We are going to create a userentry, wasadmin, for this purpose, using the administration gui, Web PortalManager, provided with Access Manager.The Web Portal Manager (WPM) is a Web-based GUI that provides theadministration of users, groups, and the object space of Access Manager. Byusing the Web Portal Manager, we can add users to the directory which can beused by both <strong>WebSphere</strong> and Access Manager in one step.Chapter 12. Tivoli Access Manager 381

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!