29.01.2013 Views

WebSphere Application Server V7.0: Concepts ... - IBM Redbooks

WebSphere Application Server V7.0: Concepts ... - IBM Redbooks

WebSphere Application Server V7.0: Concepts ... - IBM Redbooks

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

All communication between the Tivoli Access Manager clients and the Tivoli<br />

Access Manager server is performed through the Java Authorization Contract for<br />

Containers (JACC) API.<br />

Figure 2-1 shows the integration interfaces between <strong>WebSphere</strong> <strong>Application</strong><br />

<strong>Server</strong> and Tivoli Access Manager.<br />

TAI<br />

Note: AllAuthenticated and Everyone are subjects that are specific to<br />

<strong>WebSphere</strong> <strong>Application</strong> <strong>Server</strong>. These special categories allow access to a<br />

resource to be granted to all those users who have been authenticated<br />

regardless of what repository user groups they might belong to and allow<br />

access to be granted to all users whether or not they are authenticated.<br />

PDJAdmin<br />

(Management)<br />

<strong>WebSphere</strong> <strong>Application</strong> <strong>Server</strong> <strong>V7.0</strong><br />

Access Manager for <strong>WebSphere</strong> Component<br />

JACC<br />

Provider<br />

Contract<br />

JACC<br />

Management<br />

Access Manager Java Runtime Component<br />

Local ACL DB Replica<br />

Access Manager Policy <strong>Server</strong> AM Authorization <strong>Server</strong><br />

Access Manager <strong>Server</strong><br />

PDPerm<br />

(Authorization)<br />

Figure 2-1 Integration of <strong>WebSphere</strong> <strong>Application</strong> <strong>Server</strong> with Tivoli Access Manager<br />

32 <strong>WebSphere</strong> <strong>Application</strong> <strong>Server</strong> <strong>V7.0</strong>: <strong>Concepts</strong>, Planning, and Design<br />

GSO<br />

Credential<br />

Mapping<br />

PDPrincipal<br />

(Authentication)<br />

User Registry Master ACL DB ACL DB Replica

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!