Novell ACCESS MANAGER 3.1 SP2 - ACCESS GATEWAY GUIDE 2010 Manual page 45

Access gateway guide
Hide thumbs Also See for ACCESS MANAGER 3.1 SP2 - ACCESS GATEWAY GUIDE 2010:
Table of Contents

Advertisement

Configuring the Teaming Server to Trust the Access Gateway
To use Teaming as a protected resource of an Access Gateway and to use Identity Injection for
single sign-on, the Teaming server needs a trusted relationship with the Access Gateway. With a
trusted relationship, the Teaming server can process the authorization header credentials. The
Teaming server accepts only a simple username (such as user1) and password in the authorization
header.
This section explains how to set up the trusted relationship and how to enable simultaneous logout,
so that when the user logs out of Teaming, the user is also logged out of the Access Gateway.
To configure the trusted relationship:
1 Log in to the Teaming server.
2 Stop the Teaming server with the following command:
/etc/init.d/teaming stop
3 Run the
installer-teaming.linux
4 Follow the prompts, then select Reconfigure settings.
5 Follow the prompts, then select Advanced installation.
6 Follow the prompts, selecting the defaults until the Enable Access Gateway option appears,
then type
.
Yes
7 In the Access Gateway address(es) section, include the IP address of the Access Gateway that
is used for the connection to the Teaming server.
If the Access Gateway is part of a cluster, add the IP address for each cluster member.
Wildcards such as 164.99.*.* are allowed.
When you specify IP addresses in this option, Teaming logins are allowed only from the
specified addresses. Also, if Authorization header credentials are not present or are incorrect,
the user is prompted for login using Basic Authentication.
8 When prompted for the Logout URL, specify the URL of the published DNS name of the proxy
service plus
/AGLogout
For example, if the published DNS name of the proxy service is
teaming.doc.provo.novell.com
https://teaming.doc.provo.novell.com/AGLogout
9 When you are prompted to use the Access Gateway for WebDAV connections, type
10 Follow the prompts to complete the reconfiguration process.
11 Start the Teaming server with the following command:
/etc/init.d/teaming start
12 Continue with
"Configuring a Domain-Based Multi-Homing Service for Novell Teaming" on
page
45.
Configuring a Domain-Based Multi-Homing Service for Novell Teaming
The following instructions describe how to set up a domain-based service to protect the Teaming
server. In this example, the published DNS name of the service is
teaming.doc.provo.novell.com
http://teaming.doc.provo.novell.com/teaming
path for the Teaming application.
script.
.
, specify the following URL:
. Users would access the Teaming server with a URL similar to
Configuring the Access Gateway to Protect Web Resources
. The
path is the default access
/teaming
.
No
45

Advertisement

Table of Contents
loading

Table of Contents