Configuring The Agent For Authentication; Prerequisites - Novell ACCESS MANAGER 3.1 SP1 - AGENT GUIDE Manual

J2ee* agent guide
Table of Contents

Advertisement

Configuring the Agent for
2
Authentication
You can configure the Access Manager to interact with your application server in one of two ways:
As an identity provider for the user authentication and user roles. In this configuration, the
application server is accessed directly by the user, and the agent is configured to redirect the
user to the Identity Server for authentication and user roles. If you need the security of SSL,
you need to configure the application server for SSL.
As a protected resource of the Access Gateway. When the agent is configured to be an Access
Gateway protected resource, the IP address of the application server is hidden from the user and
the user must access it through the Access Gateway. You can configure the Access Gateway to
require SSL connections without configuring the application server for SSL.
This section describes how to set up both of these configurations.
Section 2.1, "Prerequisites," on page 45
Section 2.2, "Possible Configurations," on page 46
Section 2.3, "Configuring the Agent for Direct Access," on page 47
Section 2.4, "Configuring Authentication Contract," on page 49
Section 2.5, "Protecting the Application Server with the Access Gateway," on page 53

2.1 Prerequisites

You have set up a basic configuration. See
in the
Novell Access Manager 3.1 SP1 Setup
You have a J2EE application server containing an application with security constraints.
®
Novell
provides a test application,
Manager role. After installation, the location of this application is platform-specific:
On a Linux J2EE server, this application is copied to the
directory.
example
On a Windows J2EE server, this application is copied to the
<Install_Directory>\sampleapp
To use the application, copy it to the
this application, which is configured for public access, contains a link to a page that explains
how to add security constraints to a J2EE application.
You have configured the Identity Server with policies for the roles required by your
application. For the sample payroll application, this is an Employee role and a Manager role.
See
"Creating Role
Guide.
You have the agent installed on your J2EE server. See
on page
11.
"Setting Up a Basic Access Manager
PayrollApp.ear
directory.
deploy
Policies" in the
Novell Access Manager 3.1 SP1 Policy Management
Guide.
, that requires an Employee role and a
/opt/novell/nids_agents/
directory of your J2EE server. The first page of
Chapter 1, "Installing the J2EE Agents,"

Configuring the Agent for Authentication

2
Configuration"
45

Advertisement

Table of Contents
loading

This manual is also suitable for:

Access manager 3.1 sp 1

Table of Contents