29.01.2013 Views

WebSphere Application Server V7.0: Concepts ... - IBM Redbooks

WebSphere Application Server V7.0: Concepts ... - IBM Redbooks

WebSphere Application Server V7.0: Concepts ... - IBM Redbooks

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Other roles that affect permissions for users and groups are as follows:<br />

► Sender<br />

User/group can send (produce) messages to the destination.<br />

► Receiver<br />

User/group can read (consume) messages from the destination.<br />

► Browser<br />

User/group can read (non-destructive) messages from the destination.<br />

Address the following questions:<br />

► What users or groups, or both, do I need to define or have already been<br />

defined?<br />

► What are the minimum permissions I need to assign to each one?<br />

Secure message transportation<br />

A message engine uses a particular transport chain to connect to a bus and<br />

communicate a message to another messaging engine. The transport chains<br />

have attributes such as security encryption (using SSL or HTTPS, for example)<br />

and the communication protocol used (TCP/IP, for example).<br />

Encryption is obviously more secure, but can have performance impacts. This is<br />

also true for the protocols, although your choice of protocol is usually decided for<br />

you by what you are trying to communicate with. For each bus, you choose the<br />

particular transport chains that have the attributes you need.<br />

Relevant questions to ask when designing secure message transportation<br />

solutions are as follows:<br />

► What types of messages do I need secured?<br />

► Where do I need to use encryption, and to what extent?<br />

► What are the connection requirements (in terms of security) of the party I am<br />

trying to communicate with?<br />

10.5.3 Planning for high availability<br />

An application server only has one messaging engine for each bus of which it is a<br />

member. There is no option for failover. An application server that is clustered will<br />

by default have one active messaging engine. If the server hosting the<br />

messaging engine fails, the messaging engine activates on another server in the<br />

cluster.<br />

352 <strong>WebSphere</strong> <strong>Application</strong> <strong>Server</strong> <strong>V7.0</strong>: <strong>Concepts</strong>, Planning, and Design

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!