22.12.2012 Views

Front cover - IBM Redbooks

Front cover - IBM Redbooks

Front cover - IBM Redbooks

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

620 Lotus Security Handbook<br />

mapping. LDAP distinguished names must therefore be used in the ACLs of<br />

databases.<br />

The Database ACL of the main.nsf database is shown in Figure 14-36 as an<br />

example.<br />

Figure 14-36 LDAP username in ACL<br />

14.4 Introduction of WebSphere Portal<br />

In this phase of our scenario, an employee portal is set up via the installation and<br />

integration of an <strong>IBM</strong> WebSphere Portal infrastructure. This phase demonstrates<br />

that SSO can work between WebSphere and Lotus products.<br />

In this new environment, all users will continue to be authenticated against the<br />

LDAP directory. Internet-based users will now connect into the portal server<br />

directly via the reverse proxy. In some cases, the portal server will then allow<br />

access to Sametime and QuickPlace to fetch data on behalf of the users. In other<br />

cases, when portlets are based on iframe technologies, the user’s browser will<br />

still separately communicate and authentication with the Domino servers through<br />

the reverse proxy. This is the case for the iNotes portlets.<br />

This new environment is depicted in Figure 14-37.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!