10.02.2013 Views

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Host<br />

name<br />

of<br />

the<br />

LDAP<br />

server.<br />

The<br />

<strong>WebSEAL</strong><br />

configuration<br />

utility<br />

gets<br />

the<br />

host_name<br />

value<br />

from<br />

the<br />

pd.conf<br />

file.<br />

The<br />

pd.conf<br />

file<br />

is<br />

created<br />

when<br />

the<br />

<strong>Tivoli</strong><br />

<strong>Access</strong><br />

<strong>Manager</strong><br />

runtime<br />

component<br />

is<br />

configured<br />

on<br />

the<br />

machine.<br />

The<br />

<strong>Tivoli</strong><br />

<strong>Access</strong><br />

<strong>Manager</strong><br />

runtime<br />

component<br />

is<br />

a<br />

prerequisite<br />

<strong>for</strong><br />

<strong>WebSEAL</strong>.<br />

Valid<br />

values<br />

<strong>for</strong><br />

host_name<br />

include<br />

any<br />

valid<br />

IP<br />

host<br />

name.<br />

The<br />

host_name<br />

does<br />

not<br />

have<br />

to<br />

be<br />

a<br />

fully<br />

qualified<br />

domain<br />

name.<br />

This<br />

stanza<br />

entry<br />

is<br />

required.<br />

The<br />

default<br />

value<br />

is<br />

the<br />

value<br />

entered<br />

by<br />

the<br />

administrator<br />

during<br />

the<br />

configuration<br />

of<br />

the<br />

<strong>Tivoli</strong><br />

<strong>Access</strong><br />

<strong>Manager</strong><br />

runtime<br />

component.<br />

Examples:<br />

host<br />

=<br />

surf<br />

host<br />

=<br />

surf.santacruz.ibm.com<br />

port<br />

=<br />

port_number<br />

Number<br />

of<br />

the<br />

TCP/IP<br />

port<br />

used<br />

<strong>for</strong><br />

communicating<br />

with<br />

the<br />

LDAP<br />

server.<br />

Note<br />

that<br />

this<br />

is<br />

not<br />

<strong>for</strong><br />

SSL<br />

communication.<br />

A<br />

valid<br />

port<br />

number<br />

is<br />

any<br />

positive<br />

integer<br />

that<br />

is<br />

allowed<br />

by<br />

TCP/IP<br />

and<br />

that<br />

is<br />

not<br />

currently<br />

being<br />

used<br />

by<br />

another<br />

application.<br />

This<br />

stanza<br />

entry<br />

is<br />

required<br />

when<br />

LDAP<br />

is<br />

enabled.<br />

Default<br />

value:<br />

389.<br />

Example:<br />

port<br />

=<br />

389<br />

bind-dn<br />

=<br />

LDAP_dn<br />

LDAP<br />

user<br />

distinguished<br />

name<br />

(DN)<br />

that<br />

is<br />

used<br />

when<br />

binding<br />

(or<br />

signing<br />

on)<br />

to<br />

the<br />

LDAP<br />

server.<br />

This<br />

is<br />

the<br />

name<br />

that<br />

represents<br />

the<br />

<strong>WebSEAL</strong><br />

server<br />

daemon.<br />

This<br />

stanza<br />

entry<br />

is<br />

required<br />

when<br />

LDAP<br />

is<br />

enabled.<br />

The<br />

default<br />

value<br />

is<br />

built<br />

by<br />

combining<br />

the<br />

daemon<br />

name<br />

webseald<br />

with<br />

the<br />

host_name<br />

that<br />

was<br />

specified<br />

by<br />

the<br />

administrator<br />

during<br />

the<br />

configuration<br />

of<br />

the<br />

<strong>Tivoli</strong><br />

<strong>Access</strong><br />

<strong>Manager</strong><br />

runtime<br />

component.<br />

Example:<br />

bind-dn<br />

=<br />

cn=webseald/surf,cn=SecurityDaemons,secAuthority=Default<br />

See<br />

also<br />

the<br />

<strong>IBM</strong><br />

<strong>Tivoli</strong><br />

<strong>Access</strong><br />

<strong>Manager</strong><br />

<strong>for</strong><br />

e-<strong>business</strong><br />

Per<strong>for</strong>mance<br />

Tuning<br />

Guide.<br />

bind-pwd<br />

=<br />

LDAP_password<br />

Password<br />

<strong>for</strong><br />

the<br />

LDAP<br />

user<br />

distinguished<br />

name<br />

declared<br />

in<br />

the<br />

bind-dn<br />

stanza<br />

entry.<br />

This<br />

stanza<br />

entry<br />

is<br />

required<br />

when<br />

LDAP<br />

is<br />

enabled.<br />

The<br />

default<br />

value<br />

of<br />

this<br />

stanza<br />

entry<br />

is<br />

set<br />

during<br />

<strong>WebSEAL</strong><br />

configuration.<br />

The<br />

<strong>WebSEAL</strong><br />

configuration<br />

reads<br />

the<br />

LDAP_password<br />

that<br />

was<br />

specified<br />

by<br />

the<br />

administrator<br />

during<br />

the<br />

configuration<br />

of<br />

the<br />

<strong>Tivoli</strong><br />

<strong>Access</strong><br />

<strong>Manager</strong><br />

runtime<br />

component.<br />

This<br />

value<br />

is<br />

read<br />

from<br />

the<br />

<strong>Tivoli</strong><br />

<strong>Access</strong><br />

<strong>Manager</strong><br />

configuration<br />

file,<br />

pd.conf.<br />

Example:<br />

bind-pwd<br />

=<br />

zs77WVoLSZn1rKrL<br />

cache-enabled<br />

=<br />

{yes|true|no|false}<br />

394<br />

<strong>IBM</strong><br />

<strong>Tivoli</strong><br />

<strong>Access</strong><br />

<strong>Manager</strong><br />

<strong>for</strong><br />

e-<strong>business</strong>:<br />

<strong>WebSEAL</strong><br />

<strong>Administration</strong><br />

Guide

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!