10.02.2013 Views

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Basic<br />

authentication<br />

Basic<br />

authentication<br />

(BA)<br />

is<br />

a<br />

standard<br />

method<br />

<strong>for</strong><br />

providing<br />

a<br />

username<br />

and<br />

password<br />

to<br />

the<br />

authentication<br />

mechanism.<br />

BA<br />

is<br />

defined<br />

by<br />

the<br />

HTTP<br />

protocol<br />

and<br />

can<br />

be<br />

implemented<br />

over<br />

HTTP<br />

and<br />

over<br />

HTTPS.<br />

By<br />

default,<br />

<strong>WebSEAL</strong><br />

is<br />

configured<br />

<strong>for</strong><br />

authentication<br />

over<br />

HTTPS<br />

via<br />

Basic<br />

authentication<br />

(BA)<br />

username<br />

and<br />

password.<br />

Enabling<br />

and<br />

disabling<br />

basic<br />

authentication<br />

The<br />

ba-auth<br />

parameter,<br />

located<br />

in<br />

the<br />

[ba]<br />

stanza<br />

of<br />

the<br />

<strong>WebSEAL</strong><br />

configuration<br />

file,<br />

enables<br />

and<br />

disables<br />

the<br />

basic<br />

authentication<br />

method.<br />

v<br />

To<br />

enable<br />

the<br />

basic<br />

authentication<br />

method,<br />

enter<br />

″http″,<br />

″https″,<br />

or<br />

″both″.<br />

v<br />

To<br />

disable<br />

the<br />

basic<br />

authentication<br />

method,<br />

enter<br />

″none″.<br />

For<br />

example:<br />

[ba]<br />

ba-auth<br />

=<br />

https<br />

Setting<br />

the<br />

realm<br />

name<br />

The<br />

realm<br />

name<br />

is<br />

the<br />

text<br />

that<br />

is<br />

displayed<br />

in<br />

the<br />

dialog<br />

box<br />

that<br />

appears<br />

when<br />

the<br />

browser<br />

prompts<br />

the<br />

user<br />

<strong>for</strong><br />

login<br />

data.<br />

The<br />

realm<br />

name<br />

is<br />

also<br />

the<br />

name<br />

of<br />

the<br />

realm<br />

to<br />

which<br />

the<br />

user<br />

will<br />

be<br />

authenticated<br />

when<br />

the<br />

user<br />

login<br />

succeeds.<br />

The<br />

configuration<br />

parameter<br />

that<br />

sets<br />

the<br />

realm<br />

name<br />

is<br />

located<br />

in<br />

the<br />

[ba]<br />

stanza<br />

of<br />

the<br />

<strong>WebSEAL</strong><br />

configuration<br />

file.<br />

For<br />

example:<br />

[ba]<br />

basic-auth-realm<br />

=<br />

<strong>Access</strong><br />

<strong>Manager</strong><br />

The<br />

dialog<br />

box<br />

would<br />

display<br />

(<strong>for</strong><br />

example):<br />

Enter<br />

username<br />

<strong>for</strong><br />

<strong>Access</strong><br />

<strong>Manager</strong><br />

at<br />

www.ibm.com:<br />

Configuring<br />

the<br />

basic<br />

authentication<br />

mechanism<br />

The<br />

passwd-ldap<br />

parameter<br />

specifies<br />

the<br />

shared<br />

library<br />

used<br />

to<br />

process<br />

username<br />

and<br />

password<br />

authentication.<br />

v<br />

On<br />

UNIX,<br />

the<br />

file<br />

that<br />

provides<br />

the<br />

built-in<br />

mapping<br />

function<br />

is<br />

a<br />

shared<br />

library<br />

called<br />

libldapauthn.<br />

v<br />

On<br />

Windows,<br />

the<br />

file<br />

that<br />

provides<br />

the<br />

built-in<br />

mapping<br />

function<br />

is<br />

a<br />

DLL<br />

called<br />

ldapauthn.<br />

Table<br />

23.<br />

Shared<br />

library<br />

names<br />

<strong>for</strong><br />

basic<br />

authentication<br />

Operating<br />

system<br />

Shared<br />

Library<br />

Solaris<br />

libldapauthn.so<br />

AIX<br />

libldapauthn.a<br />

Linux<br />

libldapauthn.so<br />

HP-UX<br />

libldapauthn.sl<br />

Windows<br />

ldapauthn.dll<br />

Chapter<br />

6.<br />

Authentication<br />

145

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!