10.02.2013 Views

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

It<br />

is<br />

not<br />

necessary<br />

to<br />

specify<br />

hidden<br />

input<br />

fields<br />

in<br />

this<br />

stanza.<br />

These<br />

fields<br />

are<br />

automatically<br />

retrieved<br />

from<br />

the<br />

HTML<br />

<strong>for</strong>m<br />

and<br />

submitted<br />

with<br />

the<br />

authentication<br />

request.<br />

For<br />

example:<br />

[<strong>for</strong>m1-data]<br />

uid<br />

=<br />

string:brian<br />

Enabling<br />

<strong>for</strong>ms<br />

single<br />

sign-on<br />

After<br />

completing<br />

the<br />

custom<br />

<strong>for</strong>ms<br />

single<br />

sign-on<br />

configuration<br />

file<br />

and<br />

locating<br />

the<br />

file<br />

in<br />

an<br />

appropriate<br />

directory,<br />

you<br />

must<br />

configure<br />

the<br />

appropriate<br />

junction<br />

to<br />

support<br />

<strong>for</strong>ms<br />

single<br />

sign-on.<br />

Use<br />

the<br />

–S<br />

junction<br />

option<br />

with<br />

the<br />

pdadmin<br />

create<br />

command:<br />

-S<br />

config-file-path<br />

The<br />

config-file-path<br />

argument<br />

specifies<br />

the<br />

location<br />

of<br />

the<br />

custom<br />

<strong>for</strong>ms<br />

single<br />

sign-on<br />

configuration<br />

file.<br />

The<br />

–S<br />

junction<br />

option<br />

enables<br />

the<br />

<strong>for</strong>ms<br />

single<br />

sign-on<br />

functionality<br />

on<br />

the<br />

junction.<br />

For<br />

example<br />

(entered<br />

as<br />

one<br />

line):<br />

UNIX:<br />

pdadmin><br />

server<br />

task<br />

web1-webseald-cruz<br />

-t<br />

tcp<br />

-h<br />

websvrA<br />

\<br />

-S<br />

/opt/pdweb/fsso/fsso.conf<br />

/jctX<br />

Windows:<br />

pdadmin><br />

server<br />

task<br />

web1-webseald-cruz<br />

-t<br />

tcp<br />

-h<br />

websvrA<br />

\<br />

-S<br />

C:/Program<br />

Files/<strong>Tivoli</strong>/PDWeb/fsso/fsso.conf<br />

/jctX<br />

Note:<br />

In<br />

a<br />

Windows<br />

environment,<br />

you<br />

must<br />

use<br />

<strong>for</strong>ward<br />

slashes<br />

(/)<br />

in<br />

the<br />

fsso.conf<br />

path<br />

name,<br />

rather<br />

than<br />

the<br />

conventional<br />

back<br />

slashes<br />

(\).<br />

The<br />

configuration<br />

file<br />

is<br />

read<br />

when<br />

the<br />

junction<br />

is<br />

created<br />

and<br />

each<br />

time<br />

<strong>WebSEAL</strong><br />

is<br />

started.<br />

Errors<br />

in<br />

the<br />

configuration<br />

file<br />

can<br />

cause<br />

<strong>WebSEAL</strong><br />

to<br />

fail<br />

at<br />

start-up.<br />

Example<br />

configuration<br />

file<br />

<strong>for</strong><br />

<strong>IBM</strong><br />

HelpNow<br />

The<br />

<strong>IBM</strong><br />

HelpNow<br />

site<br />

invokes<br />

its<br />

own<br />

<strong>for</strong>ms-based<br />

login<br />

and<br />

is<br />

there<strong>for</strong>e<br />

an<br />

example<br />

of<br />

how<br />

a<br />

<strong>for</strong>ms<br />

single<br />

sign-on<br />

solution<br />

can<br />

provide<br />

seamless<br />

access<br />

to<br />

the<br />

site<br />

<strong>for</strong><br />

its<br />

enrolled<br />

users.<br />

This<br />

section<br />

contains:<br />

v<br />

A<br />

<strong>for</strong>m<br />

section,<br />

similar<br />

to<br />

the<br />

<strong>for</strong>m<br />

sent<br />

on<br />

the<br />

HTML<br />

login<br />

page<br />

returned<br />

by<br />

the<br />

HelpNow<br />

application<br />

v<br />

The<br />

custom<br />

<strong>for</strong>ms<br />

single<br />

sign-on<br />

configuration<br />

file<br />

used<br />

to<br />

process<br />

this<br />

<strong>for</strong>m<br />

The<br />

<strong>for</strong>m<br />

found<br />

in<br />

the<br />

intercepted<br />

HTML<br />

page:<br />

<br />

<br />

Employee<br />

Serial<br />

Number:&nbsp;<br />

<br />

<br />

Country<br />

Name:<br />

<br />

Select<br />

Country<br />

United<br />

Arab<br />

Emirates<br />

-<br />

<strong>IBM</strong><br />

United<br />

Kingdom<br />

United<br />

States<br />

Uruguay<br />

332<br />

<strong>IBM</strong><br />

<strong>Tivoli</strong><br />

<strong>Access</strong><br />

<strong>Manager</strong><br />

<strong>for</strong><br />

e-<strong>business</strong>:<br />

<strong>WebSEAL</strong><br />

<strong>Administration</strong><br />

Guide

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!