13.07.2015 Views

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

►►A pattern which WebSEAL can use to identify the login form with a pagereturned from the back-end applicationA list of fields within the login form which WebSEAL is to provide the valuesfor, and where these values are to be obtained.Consider our sample application, ITSOBank sample application. It requires that auser login, using a login form. Below is the HTML source for our login page.Example 12-7 ITSOBank sample application login formUserid:Password: In our form, there are two input fields, j_username and j_password. These arethe two fields which WebSEAL will need to fill in. The next example shows theSingle Sign-On forms configuration file we created.Example 12-8 Single Sign-On forms authentication configuration file[forms-sso-login-pages]login-page-stanza = login-itsobank[login-itsobank]login-page = /itsobank/login/login.htmllogin-form-action = *gso-resource = was50argument-stanza = args-for-login-itsobank[args-for-login-itsobank]j_username = gso:usernamej_password = gso:passwordChapter 12. Tivoli Access Manager 409

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!