13.07.2015 Views

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

IBM WebSphere V5.0 Security - CGISecurity

SHOW MORE
SHOW LESS
  • No tags were found...

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

– On the Rules tab, specify the following settings.You can specify one or more naming rules that correspond to thehierarchical names of entries in the directory. Directory Assistance usesnaming rules to determine the order in which to search directories whenusers provide hierarchical names. For our example, we set the rule*/*/*/*/*/* to search for all names in the directory. For more information onNaming Rules and Directory Assistance, please refer to the Domino R5Administration Help and Administrator’s Guide.• Enable: select Yes to enable this specific rule.• Trusted for Credentials: select Yes to allow Domino to authenticateonly Web clients with names that match the rule.– On the LDAP tab, specify the following settings.• Hostname: specify the DNS Host name for the <strong>IBM</strong> SecureWaydirectory, for example secsvr01.security.itso.ibm.com• Optional Authentication Credential: the user name and password of theuser that the Domino server will use when binding to the LDAP server.If you do not specify anything, Domino will attempt to bind as ananonymous user. In our example we have used the cn=root username.Note: The name and password must correspond to a valid name andpassword in the directory of the LDAP directory server. If you did notenter a name and password, the Domino server attempts to connect tothe LDAP directory server anonymously.We also recommend using a Notes secret encryption key to encrypt theDirectory Assistance document so that only administrators with theencryption key can see the contents of the User name and Passwordfields; for more details, refer to the Domino R5 Administration Help andAdministrator’s Guide.• Base DN for search: enter the starting point for LDAP searches. Thisfield is required for SecureWay Directory. In our example we usedo=itso.• Perform LDAP searches for: Notes Clients/Web Authentication.• Channel encryption: choose None to allow the Domino server toconnect to LDAP without SSL.• Port: 389• Timeout: 60• Maximum number of entries returned: 100.498 <strong>IBM</strong> <strong>WebSphere</strong> <strong>V5.0</strong> <strong>Security</strong> Handbook

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!