13.07.2015 Views

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

7. Once the user is authenticated and has the cookie available, he/she canrequest another protected resource to Domino or <strong>WebSphere</strong>.8. Domino or <strong>WebSphere</strong> validates the token provided for the user and tells theWeb server to send the requested resource to the browser (as long as theuser has access to that resource) without prompting again for userinformation.The next sections assume that you have installed and configured <strong>WebSphere</strong>Application Server with Global <strong>Security</strong>, LTPA and LDAP user registry enabled.For more information on how to do that, please refer to Chapter 10,“Administering <strong>WebSphere</strong> security” on page 233.Enabling Single Sign-On for <strong>WebSphere</strong>In order to configure global security settings for SSO, perform the followingsteps:1. Configure your <strong>WebSphere</strong> Application Server to use the LDAP user registry.We assume that the <strong>WebSphere</strong> server is configured to use the LDAP userregistry. We will not describe detail configuration steps in this chapter. Formore information on how to use <strong>WebSphere</strong> with the LDAP user registry,please refer to 10.13, “Connecting to directory servers (LDAP)” on page 317.Our LDAP user registry for <strong>WebSphere</strong> has been configured with thefollowing attributes:– Server User ID: cn=wasadmin,o=ITSO– Server User Password: password for wasadmin– Type: SecureWay– Host: secsvr01.security.itso.ibm.com– Port: 389– Base Distinguished Name (DN): o=ITSO– Bind Distinguished Name (DN): cn=root– Bind Password: cn=root user’s passwordSearch Time-out: 60Other parameters you can leave as default.2. To enable LTPA for <strong>WebSphere</strong>, follow the steps from 10.6.2, “ConfiguringLTPA for <strong>WebSphere</strong>” on page 252.3. To generate the LTPA keys for Single Sign-On, follow the steps from 10.6.3,“Generating LTPA keys” on page 253.494 <strong>IBM</strong> <strong>WebSphere</strong> <strong>V5.0</strong> <strong>Security</strong> Handbook

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!