Deploying The Sample Payroll Application; Using The J2Ee Server To Enforce Authorization - Novell ACCESS MANAGER 3.1 SP1 - AGENT GUIDE Manual

J2ee* agent guide
Table of Contents

Advertisement

Deploying the Sample Payroll
7
Application
The sample payroll application has been configured to grant access based on whether the user has an
Employee role or a Manager role. You can configure your J2EE Agent to use the authorization
policies of the J2EE server or to use the policies of Access Manager.
Section 7.1, "Using the J2EE Server to Enforce Authorization," on page 85
Section 7.2, "Using Access Manager Policies to Enforce Authorization," on page 86
7.1 Using the J2EE Server to Enforce
Authorization
The following sections explain how to configure Access Manager to use the authorization policies
of the J2EE server.
1 Deploy the sample payroll application on your J2EE server.
The location of the sample application is platform-specific:
On Linux and AIX J2EE server, the application is copied to the
nids_agents/example
On a Windows J2EE server, the application is copied to the
<Install_Directory>\sampleapp
2 On your J2EE server, prepare the application to use the agent for login and logout. See
Section 4.1, "Preparing the Application for the Agent," on page
These steps have already been performed for the sample application. See the
the application's
WEB-INF
3 Complete any platform-specific configuration:
JBoss: These tasks have already been performed for JBoss. To understand what was
modified, see
Section 4.2, "Configuring Applications on the JBoss Server," on page
WebSphere: You need to configure the RunAs Roles feature. See
"Configuring for RunAs Roles," on page
WebLogic: You need to configure the RunAs Roles feature. See
"Configuring Applications on the WebLogic Server," on page
4 In Access Manager, create two Role policies: an Employee role and a Manager role.
See
Section 7.2.1, "Creating an Employee Role and a Manager Role," on page 86
to create these roles, and see
Manager 3.1 SP1 Policy Management Guide
5 Configure the agent for authentication, if you haven't done so already. See
"Configuring the Agent for Authentication," on page
6 Make sure that the Enforce application server policy option is selected. In the Administration
Console, click Devices > J2EE Agents > Edit.
7 To test this configuration, send the following request from a browser:
directory.
directory.
directory.
71.
"Employee
Role" and
for another way.
/opt/novell/
67.
Section 4.3.2,
Section 4.4,
73.
"Manager
Role" in the
Novell Access
Chapter 2,
45.

Deploying the Sample Payroll Application

7
file in
web.xml
69.
for one way
85

Advertisement

Table of Contents
loading

This manual is also suitable for:

Access manager 3.1 sp 1

Table of Contents