Enabling High Encryption; Configuring The Client Machines For Cardspace - Novell ACCESS MANAGER 3.1 SP1 - IDENTITY SERVER Manual

Identity server guide
Table of Contents

Advertisement

Clients need to be configured with a CardSpace client. See
Client Machines for CardSpace," on page
Enable the Liberty Personal Profile. The default attribute set created for CardSpace is
dependent upon this profile.
Click Identity Servers > Edit > Liberty > Web Service Provider. Select the Personal Profile,
then click Enable > Apply. Update the Identity Server.
(Recommended) Enable Identity Server logging while you are setting up CardSpace. Set the
Component File Logger Levels of STS and CardSpace to debug. For more information, see
Section 11.3, "Configuring Component Logging," on page
(Optional) If you are going to configure an Identity Server to be an identity provider with
managed cards, you need a second Identity Server configured to be a relying party.

6.2.1 Enabling High Encryption

To enable high encryption, you need to replace the
files.
local_policy.jar
1 Download the
Java Cryptography Extension (JCE) Unlimited Strength Jurisdiction Policy Files
6 (jce_policy-6.zip)
2 Extract the files.
3 Copy the
US_export_policy.jar
the JRE. They should replace the existing files:
Linux Identity Server:
Windows Identity Server:
4 Restart Tomcat.
Linux Identity Server: Enter the following command:
/etc/init.d/novell-tomcat5 restart
Windows Identity Server: Enter the following commands:
net stop Tomcat5
net start Tomcat5
5 Complete these steps on the Identity Server that is going to be the relying party and the Identity
Server that is going to be the identity provider.

6.2.2 Configuring the Client Machines for CardSpace

The client machines require a CardSpace card selector application. They also need to be configured
to trust the machine that is acting as an identity provider.
"Configuring Windows Clients for CardSpace" on page 170
"Configuring Linux Clients for CardSpace" on page 170
169.
(http://java.sun.com/javase/downloads/index.jsp).
and
local_policy.jar
/opt/novell/java/jre/lib/security
C:\Program Files\Novell\jre\lib\security
Section 6.2.2, "Configuring the
250.
US_export_policy.jar
files to the security directory for
and
Configuring CardSpace 169

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the ACCESS MANAGER 3.1 SP1 - IDENTITY SERVER and is the answer not in the manual?

This manual is also suitable for:

Access manager 3.1 sp1

Table of Contents