10.02.2013 Views

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

SPNEGO<br />

(continued)<br />

kinit<br />

242<br />

overview<br />

234<br />

supported<br />

plat<strong>for</strong>ms<br />

235<br />

spnego<br />

stanza<br />

242<br />

spnego-auth<br />

242,<br />

414<br />

spnego-krb-keytab-file<br />

415<br />

spnego-krb-service-name<br />

415<br />

SSL<br />

configuration<br />

<strong>WebSEAL</strong><br />

to<br />

LDAP<br />

18<br />

SSL<br />

connectivity<br />

30<br />

SSL<br />

session<br />

ID<br />

136<br />

disabling<br />

153<br />

ssl-authn-type<br />

412<br />

ssl-auto-refresh<br />

411<br />

ssl-enabled<br />

ldap<br />

397<br />

ssl-id-sessions<br />

136,<br />

153,<br />

438<br />

ssl-keyfile<br />

230,<br />

406<br />

ldap<br />

397<br />

ssl-keyfile-label<br />

230,<br />

407<br />

ldap<br />

397<br />

ssl-keyfile-pwd<br />

230,<br />

407<br />

ldap<br />

398<br />

ssl-keyfile-stash<br />

230,<br />

407<br />

ssl-listening-port<br />

40,<br />

412<br />

ssl-max-entries<br />

133,<br />

153,<br />

408<br />

ssl-pwd-life<br />

412<br />

ssl-qop-mgmt<br />

38,<br />

435<br />

ssl-qop-mgmt-default<br />

stanza<br />

38,<br />

436<br />

ssl-qop-mgmt-hosts<br />

stanza<br />

39,<br />

435<br />

ssl-qop-mgmt-networks<br />

stanza<br />

39,<br />

435<br />

ssl-v2-timeout<br />

133,<br />

408<br />

ssl-v3-timeout<br />

133<br />

ssl-v3–timeout<br />

408<br />

sslauthn<br />

152<br />

sso-consume<br />

249,<br />

420<br />

sso-create<br />

249,<br />

420<br />

stanzas<br />

uraf-ad<br />

in<br />

activedir.conf<br />

400<br />

uraf-domino<br />

403<br />

starting<br />

<strong>WebSEAL</strong><br />

72<br />

stateful<br />

junctions<br />

301,<br />

302<br />

statistics<br />

utility<br />

94<br />

step-up<br />

authentication<br />

117<br />

stepup-login<br />

88,<br />

120,<br />

444<br />

stepuplogin.html<br />

89,<br />

120<br />

stopping<br />

<strong>WebSEAL</strong><br />

72<br />

su-admin<br />

extended<br />

attribute<br />

197<br />

su-admins<br />

group<br />

188,<br />

190<br />

su-cdsso<br />

421<br />

su-certificate<br />

421<br />

su-excluded<br />

group<br />

190<br />

su-http-request<br />

421<br />

su-kerberosv5<br />

421<br />

su-passwd<br />

420<br />

su-token-card<br />

420<br />

suauthn<br />

191<br />

substring<br />

465<br />

suppress-server-identity<br />

69,<br />

390<br />

switch<br />

user<br />

188<br />

authentication<br />

mechanism<br />

191<br />

built-in<br />

shared<br />

library<br />

191<br />

custom<br />

shared<br />

library<br />

197<br />

enabling<br />

190<br />

excluding<br />

users<br />

190<br />

securitygroup<br />

190<br />

switch<br />

user<br />

(continued)<br />

su-admin<br />

extended<br />

attribute<br />

197<br />

su-admins<br />

group<br />

188,<br />

190<br />

su-excluded<br />

group<br />

190<br />

using<br />

195<br />

valid<br />

authentication<br />

methods<br />

194<br />

switch-user<br />

88,<br />

445<br />

switchuser.html<br />

89<br />

system<br />

resource<br />

3<br />

T<br />

tag<br />

value<br />

215,<br />

344<br />

tagvalue_<br />

attributes<br />

217<br />

tagvalue_user_session_id<br />

344<br />

terminate<br />

all<br />

user<br />

sessions<br />

345<br />

terminate<br />

single<br />

user<br />

session<br />

345<br />

three<br />

strikes<br />

login<br />

policy<br />

112<br />

timeout<br />

134,<br />

205,<br />

209,<br />

210,<br />

437<br />

timeout<br />

parameters<br />

GSKit<br />

SSL<br />

session<br />

cache<br />

133<br />

HTTP<br />

and<br />

HTTPS<br />

30<br />

<strong>WebSEAL</strong><br />

credentials/session<br />

cache<br />

133<br />

TLS<br />

connectivity<br />

30<br />

token<br />

34<br />

token<br />

authentication<br />

160<br />

password<br />

strength<br />

162<br />

SecurID<br />

160<br />

token-auth<br />

163,<br />

415<br />

token-cdas<br />

163,<br />

419<br />

token-login<br />

88,<br />

444<br />

tokenauthn<br />

163<br />

tokenlogin.html<br />

89,<br />

211<br />

trace<br />

utility<br />

94<br />

Transport<br />

Layer<br />

Security<br />

(TLS)<br />

30<br />

type,<br />

MIME<br />

79<br />

U<br />

unauthenticated<br />

users,<br />

controlling<br />

126<br />

unix-group<br />

384<br />

unix-pid-file<br />

384<br />

unix-user<br />

384<br />

unknownicon<br />

76,<br />

450<br />

update<br />

notification<br />

listening<br />

40<br />

upgrade<br />

utf-8<br />

issues<br />

47<br />

uraf-ad<br />

stanza<br />

in<br />

activedir.conf<br />

400<br />

uraf-domino<br />

403<br />

URL<br />

about<br />

absolute<br />

paths<br />

288<br />

about<br />

relative<br />

paths<br />

288<br />

about<br />

server-relative<br />

paths<br />

288<br />

filtering<br />

options<br />

288<br />

modifying<br />

URLs<br />

to<br />

back-end<br />

resources<br />

287<br />

single<br />

encoding<br />

47<br />

specifying<br />

document<br />

MIME<br />

types<br />

<strong>for</strong><br />

filtering<br />

79<br />

understanding<br />

path<br />

types<br />

288<br />

using<br />

junction<br />

cookies<br />

292<br />

using<br />

junction<br />

mapping<br />

table<br />

293<br />

use-same-session<br />

136,<br />

137,<br />

438<br />

use-utf8<br />

50,<br />

51,<br />

252,<br />

271,<br />

424,<br />

428,<br />

433<br />

useEncryption,<br />

Active<br />

Directory<br />

401<br />

user<br />

identity<br />

match<br />

with<br />

step-up<br />

125<br />

Index<br />

509

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!