10.02.2013 Views

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Authentication<br />

libraries<br />

[authentication-mechanisms]<br />

stanza<br />

passwd-cdas<br />

=<br />

fully_qualified_path<br />

Fully<br />

qualified<br />

path<br />

<strong>for</strong><br />

the<br />

library<br />

that<br />

implements<br />

a<br />

CDAS<br />

library<br />

<strong>for</strong><br />

either<br />

basic<br />

authentication<br />

or<br />

<strong>for</strong>ms<br />

authentication.<br />

This<br />

stanza<br />

entry<br />

is<br />

optional.<br />

There<br />

is<br />

no<br />

default<br />

value.<br />

passwd-ldap<br />

=<br />

fully_qualified_path<br />

Fully<br />

qualified<br />

path<br />

<strong>for</strong><br />

a<br />

library<br />

that<br />

implements<br />

basic<br />

authentication<br />

with<br />

an<br />

LDAP<br />

user<br />

registry.<br />

This<br />

stanza<br />

entry<br />

is<br />

optional.<br />

There<br />

is<br />

no<br />

default<br />

value.<br />

Example<br />

(entered<br />

as<br />

one<br />

line):<br />

passwd-ldap<br />

=<br />

C:\PROGRA~1\<strong>Tivoli</strong>\POLICY~1\bin\ldapauthn.dll<br />

&<br />

-cfgfile<br />

[C:/Program<br />

Files/<strong>Tivoli</strong>/PDWeb/etc/webseald-default.conf]<br />

passwd-uraf<br />

=<br />

fully_qualified_path<br />

Fully<br />

qualified<br />

path<br />

<strong>for</strong><br />

a<br />

library<br />

that<br />

implements<br />

basic<br />

authentication<br />

using<br />

the<br />

<strong>Tivoli</strong><br />

<strong>Access</strong><br />

<strong>Manager</strong><br />

URAF<br />

interface<br />

to<br />

underlying<br />

user<br />

registry<br />

types.<br />

This<br />

stanza<br />

entry<br />

is<br />

optional.<br />

There<br />

is<br />

no<br />

default<br />

value.<br />

cert-ldap<br />

=<br />

fully_qualified_path<br />

Fully<br />

qualified<br />

path<br />

<strong>for</strong><br />

a<br />

library<br />

that<br />

implements<br />

certificate<br />

authentication.<br />

This<br />

stanza<br />

entry<br />

is<br />

optional.<br />

The<br />

default<br />

value<br />

<strong>for</strong><br />

the<br />

built-in<br />

library<br />

on<br />

Solaris<br />

is:<br />

/opt/PolicyDirector/lib/libcertauthn.so<br />

&<br />

-chgfile<br />

\<br />

[/opt/pdweb/etc/webseal-default.conf]<br />

Example<br />

on<br />

Windows<br />

(entered<br />

as<br />

one<br />

continuous<br />

line):<br />

cert-ldap<br />

=<br />

C:\PROGRA~1\<strong>Tivoli</strong>\POLICY~1\bin\libcertauthn.dll<br />

&<br />

-cfgfile<br />

[C:/Program<br />

Files/<strong>Tivoli</strong>/PDWeb/etc/webseald-default.conf]<br />

token-cdas<br />

=<br />

fully_qualified_path<br />

Fully<br />

qualified<br />

path<br />

<strong>for</strong><br />

a<br />

library<br />

that<br />

implements<br />

token<br />

authentication.<br />

This<br />

stanza<br />

entry<br />

is<br />

optional.<br />

There<br />

is<br />

no<br />

default<br />

value.<br />

cert-ssl<br />

=<br />

fully_qualified_path<br />

Fully<br />

qualified<br />

path<br />

<strong>for</strong><br />

a<br />

library<br />

that<br />

implements<br />

certificate<br />

authentication.<br />

This<br />

stanza<br />

entry<br />

is<br />

optional.<br />

There<br />

is<br />

no<br />

default<br />

value.<br />

http-request<br />

=<br />

fully_qualified_path<br />

Appendix<br />

A.<br />

<strong>WebSEAL</strong><br />

configuration<br />

file<br />

reference<br />

419

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!