10.02.2013 Views

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Cross-domain<br />

single<br />

sign-on<br />

v<br />

[cdsso]<br />

v<br />

[cdsso-peers]<br />

[cdsso]<br />

stanza<br />

cdsso-auth<br />

=<br />

{none|http|https|both}<br />

Enables<br />

<strong>WebSEAL</strong><br />

to<br />

accept<br />

tokens.<br />

Requires<br />

that<br />

an<br />

authentication<br />

mechanism<br />

is<br />

specified<br />

<strong>for</strong><br />

the<br />

token<br />

consume<br />

(sso-consume)<br />

library<br />

in<br />

the<br />

[authentication-mechanisms]<br />

stanza.<br />

Specifies<br />

which<br />

protocols<br />

are<br />

supported.<br />

The<br />

value<br />

both<br />

means<br />

both<br />

HTTP<br />

and<br />

HTTPS.<br />

This<br />

stanza<br />

entry<br />

is<br />

required.<br />

Default<br />

value:<br />

none<br />

Example:<br />

cdsso-auth<br />

=<br />

none<br />

cdsso-create<br />

=<br />

{none|http|https|both}<br />

Enables<br />

<strong>WebSEAL</strong><br />

to<br />

accept<br />

tokens.<br />

Requires<br />

that<br />

an<br />

authentication<br />

mechanism<br />

is<br />

specified<br />

<strong>for</strong><br />

the<br />

token<br />

create<br />

(sso-create)<br />

library<br />

in<br />

the<br />

[authentication-mechanisms]<br />

stanza.<br />

Specifies<br />

which<br />

protocols<br />

are<br />

supported.<br />

The<br />

value<br />

both<br />

means<br />

both<br />

HTTP<br />

and<br />

HTTPS.<br />

This<br />

stanza<br />

entry<br />

is<br />

required.<br />

Default<br />

value:<br />

none<br />

Example:<br />

cdsso-create<br />

=<br />

none<br />

authtoken-lifetime<br />

=<br />

number_of_seconds<br />

Positive<br />

integer<br />

that<br />

expresses<br />

the<br />

number<br />

of<br />

seconds<br />

<strong>for</strong><br />

which<br />

the<br />

single<br />

sign-on<br />

authentication<br />

token<br />

is<br />

valid.<br />

Minimum<br />

value:<br />

1.<br />

There<br />

is<br />

no<br />

maximum<br />

value.<br />

See<br />

the<br />

discussion<br />

of<br />

integer<br />

maximum<br />

values<br />

in<br />

“Guidelines<br />

<strong>for</strong><br />

configuring<br />

stanzas”<br />

on<br />

page<br />

378.<br />

This<br />

stanza<br />

entry<br />

is<br />

required.<br />

Default<br />

value:<br />

180<br />

Example:<br />

authtoken-lifetime<br />

=<br />

180<br />

cdsso-argument<br />

=<br />

argument_name<br />

Name<br />

of<br />

the<br />

argument<br />

containing<br />

the<br />

cross-domain<br />

single<br />

sign-on<br />

token<br />

in<br />

a<br />

query<br />

string<br />

in<br />

a<br />

request.<br />

This<br />

is<br />

used<br />

to<br />

identify<br />

incoming<br />

requests<br />

that<br />

contain<br />

CDSSO<br />

authentication<br />

in<strong>for</strong>mation.<br />

Valid<br />

characters<br />

are<br />

any<br />

ASCII<br />

characters,<br />

except<br />

<strong>for</strong><br />

question<br />

mark<br />

(<br />

?<br />

),<br />

ampersand<br />

(<br />

&<br />

),<br />

and<br />

equals<br />

sign<br />

(<br />

=<br />

).<br />

This<br />

stanza<br />

entry<br />

is<br />

required.<br />

Default<br />

value:<br />

PD-ID<br />

Example:<br />

cdsso-argument<br />

=<br />

PD-ID<br />

use-utf8<br />

=<br />

{true|false}<br />

428<br />

<strong>IBM</strong><br />

<strong>Tivoli</strong><br />

<strong>Access</strong><br />

<strong>Manager</strong><br />

<strong>for</strong><br />

e-<strong>business</strong>:<br />

<strong>WebSEAL</strong><br />

<strong>Administration</strong><br />

Guide

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!