10.02.2013 Views

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Server<br />

instance<br />

configuration<br />

This<br />

section<br />

contains<br />

the<br />

following<br />

topics:<br />

v<br />

“Server<br />

instance<br />

configuration<br />

overview”<br />

v<br />

“Server<br />

instance<br />

configuration<br />

tasks”<br />

on<br />

page<br />

24<br />

Server<br />

instance<br />

configuration<br />

overview<br />

Read<br />

each<br />

topic<br />

in<br />

this<br />

overview<br />

be<strong>for</strong>e<br />

configuring<br />

a<br />

<strong>WebSEAL</strong><br />

server<br />

instance.<br />

This<br />

section<br />

contains<br />

the<br />

following<br />

topics:<br />

v<br />

“Planning<br />

a<br />

server<br />

instance<br />

configuration”<br />

v<br />

“Example<br />

server<br />

instance<br />

configuration<br />

values”<br />

on<br />

page<br />

20<br />

v<br />

“Unique<br />

configuration<br />

file<br />

<strong>for</strong><br />

each<br />

instance”<br />

on<br />

page<br />

21<br />

v<br />

“Interactive<br />

configuration<br />

overview”<br />

on<br />

page<br />

21<br />

v<br />

“Command<br />

line<br />

configuration<br />

overview”<br />

on<br />

page<br />

21<br />

v<br />

“Silent<br />

configuration<br />

overview”<br />

on<br />

page<br />

23<br />

Planning<br />

a<br />

server<br />

instance<br />

configuration<br />

To<br />

configure<br />

a<br />

<strong>WebSEAL</strong><br />

instance,<br />

you<br />

must<br />

decide<br />

how<br />

to<br />

deploy<br />

the<br />

server<br />

<strong>for</strong><br />

your<br />

environment,<br />

and<br />

you<br />

must<br />

collect<br />

some<br />

in<strong>for</strong>mation<br />

about<br />

the<br />

<strong>Tivoli</strong><br />

<strong>Access</strong><br />

<strong>Manager</strong><br />

deployment.<br />

Unless<br />

stated<br />

otherwise,<br />

each<br />

of<br />

the<br />

following<br />

settings<br />

is<br />

required.<br />

v<br />

Administrative<br />

user<br />

ID<br />

and<br />

password<br />

This<br />

is<br />

the<br />

<strong>Tivoli</strong><br />

<strong>Access</strong><br />

<strong>Manager</strong><br />

administrative<br />

user.<br />

By<br />

default,<br />

this<br />

is<br />

the<br />

sec_master<br />

user.<br />

You<br />

must<br />

have<br />

administrative<br />

user<br />

permissions<br />

to<br />

configure<br />

a<br />

<strong>WebSEAL</strong><br />

server<br />

instance<br />

v<br />

Host<br />

name<br />

The<br />

name<br />

by<br />

which<br />

the<br />

system<br />

is<br />

known<br />

on<br />

the<br />

network.<br />

Typically<br />

this<br />

is<br />

expressed<br />

as<br />

a<br />

fully<br />

qualified<br />

domain<br />

name.<br />

During<br />

interactive<br />

installations,<br />

you<br />

can<br />

alternatively<br />

provide<br />

just<br />

the<br />

system<br />

name.<br />

Fully<br />

qualified<br />

domain<br />

name:<br />

diamond.subnet2.ibm.com<br />

System<br />

name:<br />

diamond<br />

v<br />

Instance<br />

name<br />

A<br />

unique<br />

name<br />

that<br />

identifies<br />

the<br />

<strong>WebSEAL</strong><br />

server.<br />

Multiple<br />

<strong>WebSEAL</strong><br />

servers<br />

can<br />

be<br />

installed<br />

on<br />

one<br />

computer<br />

system.<br />

Each<br />

must<br />

have<br />

a<br />

unique<br />

name.<br />

Names<br />

can<br />

consist<br />

of<br />

alphanumeric<br />

characters<br />

([A-Z][a-z][0–9])<br />

plus<br />

the<br />

following<br />

characters:<br />

underscore<br />

(<br />

_<br />

),<br />

hyphen<br />

(<br />

-<br />

),<br />

and<br />

period<br />

(<br />

.<br />

).<br />

No<br />

other<br />

characters<br />

are<br />

valid.<br />

Names<br />

must<br />

not<br />

exceed<br />

20<br />

characters<br />

in<br />

length.<br />

Example<br />

names:<br />

web1,<br />

web2,<br />

web_3,<br />

web-4,<br />

web.5<br />

The<br />

initial<br />

<strong>WebSEAL</strong><br />

server,<br />

which<br />

is<br />

configured<br />

during<br />

installation<br />

and<br />

configuration<br />

of<br />

<strong>WebSEAL</strong>,<br />

is<br />

assigned<br />

by<br />

default<br />

an<br />

instance<br />

name<br />

of<br />

default.<br />

However,<br />

this<br />

name<br />

could<br />

have<br />

been<br />

modified<br />

by<br />

the<br />

administrator<br />

during<br />

initial<br />

installation<br />

and<br />

configuration.<br />

The<br />

choice<br />

of<br />

instance<br />

name<br />

will<br />

be<br />

viewable<br />

after<br />

configuration.<br />

For<br />

example,<br />

the<br />

file<br />

name<br />

<strong>for</strong><br />

the<br />

configuration<br />

file<br />

<strong>for</strong><br />

the<br />

<strong>WebSEAL</strong><br />

server<br />

instance<br />

is<br />

created<br />

as<br />

follows:<br />

webseald-instance_name.conf<br />

16<br />

<strong>IBM</strong><br />

<strong>Tivoli</strong><br />

<strong>Access</strong><br />

<strong>Manager</strong><br />

<strong>for</strong><br />

e-<strong>business</strong>:<br />

<strong>WebSEAL</strong><br />

<strong>Administration</strong><br />

Guide

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!