10.02.2013 Views

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

IBM Tivoli Access Manager for e-business: WebSEAL Administration ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Table<br />

6.<br />

Supported<br />

values<br />

<strong>for</strong><br />

the<br />

categories<br />

entry<br />

(continued)<br />

health<br />

In<strong>for</strong>mation<br />

about<br />

an<br />

individual’s<br />

physical<br />

or<br />

mental<br />

health,<br />

sexual<br />

orientation,<br />

use<br />

or<br />

inquiry<br />

into<br />

health<br />

care<br />

services<br />

or<br />

products,<br />

and<br />

purchase<br />

of<br />

health<br />

care<br />

services<br />

or<br />

products.<br />

preference<br />

Data<br />

about<br />

an<br />

individual’s<br />

likes<br />

and<br />

dislikes.<br />

For<br />

example,<br />

favorite<br />

color<br />

or<br />

musical<br />

tastes.<br />

location<br />

In<strong>for</strong>mation<br />

that<br />

can<br />

be<br />

used<br />

to<br />

identify<br />

an<br />

individual’s<br />

current<br />

physical<br />

location<br />

and<br />

track<br />

them<br />

as<br />

their<br />

location<br />

changes.<br />

For<br />

example,<br />

Global<br />

Positioning<br />

System<br />

position<br />

data.<br />

government<br />

Identifiers<br />

issued<br />

by<br />

a<br />

government<br />

<strong>for</strong><br />

purposes<br />

of<br />

consistently<br />

identifying<br />

the<br />

individual.<br />

other-category<br />

Other<br />

types<br />

of<br />

data<br />

not<br />

captured<br />

by<br />

the<br />

above<br />

definitions.<br />

5.<br />

Specify<br />

whether<br />

the<br />

full<br />

P3P<br />

policy<br />

contains<br />

some<br />

in<strong>for</strong>mation<br />

regarding<br />

disputes<br />

over<br />

the<br />

in<strong>for</strong>mation<br />

contained<br />

within<br />

the<br />

cookie.<br />

Set<br />

the<br />

value<br />

<strong>for</strong><br />

the<br />

following<br />

entry:<br />

disputes<br />

=<br />

{yes|no}<br />

The<br />

dispute<br />

entry<br />

is<br />

not<br />

specified<br />

in<br />

the<br />

<strong>WebSEAL</strong><br />

configuration<br />

file.<br />

The<br />

P3P<br />

specification<br />

states<br />

that<br />

when<br />

the<br />

dispute<br />

entry<br />

is<br />

not<br />

specified,<br />

the<br />

default<br />

value<br />

is<br />

automatically<br />

assigned<br />

no.<br />

Table<br />

7.<br />

Supported<br />

values<br />

<strong>for</strong><br />

the<br />

dispute<br />

entry<br />

Value<br />

Description<br />

yes<br />

The<br />

full<br />

P3P<br />

policy<br />

contains<br />

in<strong>for</strong>mation<br />

regarding<br />

disputes<br />

over<br />

the<br />

in<strong>for</strong>mation<br />

contained<br />

within<br />

the<br />

cookie.<br />

no<br />

The<br />

full<br />

P3P<br />

policy<br />

does<br />

not<br />

contain<br />

in<strong>for</strong>mation<br />

regarding<br />

disputes<br />

over<br />

the<br />

in<strong>for</strong>mation<br />

contained<br />

within<br />

the<br />

cookie.<br />

6.<br />

Specify<br />

the<br />

types<br />

of<br />

remedies<br />

in<br />

case<br />

a<br />

policy<br />

breach<br />

occurs.<br />

Set<br />

the<br />

value<br />

<strong>for</strong><br />

the<br />

following<br />

entry:<br />

remedies<br />

=<br />

{correct|money|law}<br />

The<br />

default<br />

setting<br />

is:<br />

remedies<br />

=<br />

correct<br />

Table<br />

8.<br />

Supported<br />

values<br />

<strong>for</strong><br />

the<br />

remedies<br />

entry<br />

Value<br />

Description<br />

correct<br />

Errors<br />

or<br />

wrongful<br />

actions<br />

arising<br />

in<br />

connection<br />

with<br />

the<br />

privacy<br />

policy<br />

will<br />

be<br />

remedied<br />

by<br />

the<br />

service.<br />

money<br />

If<br />

the<br />

service<br />

provider<br />

violates<br />

its<br />

privacy<br />

policy<br />

it<br />

will<br />

pay<br />

the<br />

individual<br />

an<br />

amount<br />

specified<br />

in<br />

the<br />

human<br />

readable<br />

privacy<br />

policy<br />

or<br />

the<br />

amount<br />

of<br />

damages.<br />

law<br />

Remedies<br />

<strong>for</strong><br />

breaches<br />

of<br />

the<br />

policy<br />

statement<br />

will<br />

be<br />

determined<br />

based<br />

on<br />

the<br />

law<br />

referenced<br />

in<br />

the<br />

human<br />

readable<br />

description.<br />

7.<br />

Specify<br />

either<br />

that<br />

no<br />

data<br />

is<br />

collected<br />

(including<br />

Web<br />

logs),<br />

or<br />

that<br />

the<br />

organization<br />

collecting<br />

the<br />

data<br />

will<br />

make<br />

anonymous<br />

any<br />

in<strong>for</strong>mation<br />

that<br />

identifies<br />

the<br />

user.<br />

Set<br />

the<br />

value<br />

<strong>for</strong><br />

the<br />

following<br />

entry:<br />

non-identifiable<br />

=<br />

{yes|no}<br />

The<br />

non-identifiable<br />

entry<br />

is<br />

not<br />

specified<br />

in<br />

the<br />

<strong>WebSEAL</strong><br />

configuration<br />

file.<br />

The<br />

P3P<br />

specification<br />

states<br />

that<br />

when<br />

the<br />

non-identifiable<br />

entry<br />

is<br />

not<br />

64<br />

<strong>IBM</strong><br />

<strong>Tivoli</strong><br />

<strong>Access</strong><br />

<strong>Manager</strong><br />

<strong>for</strong><br />

e-<strong>business</strong>:<br />

<strong>WebSEAL</strong><br />

<strong>Administration</strong><br />

Guide

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!