0% found this document useful (0 votes)
38 views

3 Types of Security 1.server Security 2.application Security 3.web Security-SSL

There are 3 types of security in Websphere: server security, application security, and web security using SSL. The Security Configuration Wizard provides a predefined security configuration for the entire WAS environment, covering all 3 types. Server security in Websphere uses the Security Configuration Wizard and an embedded LDAP repository for configuration, with different roles like Administrator, Operator, and Monitor having different permissions.

Uploaded by

shekhargpt
Copyright
© © All Rights Reserved
Available Formats
Download as DOC, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
38 views

3 Types of Security 1.server Security 2.application Security 3.web Security-SSL

There are 3 types of security in Websphere: server security, application security, and web security using SSL. The Security Configuration Wizard provides a predefined security configuration for the entire WAS environment, covering all 3 types. Server security in Websphere uses the Security Configuration Wizard and an embedded LDAP repository for configuration, with different roles like Administrator, Operator, and Monitor having different permissions.

Uploaded by

shekhargpt
Copyright
© © All Rights Reserved
Available Formats
Download as DOC, PDF, TXT or read online on Scribd
You are on page 1/ 4

Security in Websphere

3 types of Security

1.Server Security

2.Application Security

3.Web Security-SSL

Security Configuration Wizard—it is Predefined Security Configuration For total


WAS Envrionment which includes all 3 types of security

Using JAAS---Java based Authentication and Authorization Service security is


developed in Websphere

ServerSecurity---- Security Configuration Wizard—Embedded LDAP


Repositry(File based)
Server Security Process

1.AdminConsole(websphere,websphere)

2.Security Configuration Wizard(Authenticator)-------------->ldap db

Security Configuration Wizard(Authorization)

Security Configuration Wizard(Groups/Roles)

1.Administrator(Super User-Create,Edit,delete a user,server,app,services)----


Security can be done only this role

2.Operator(life cycle operations of server/cluster/applications)

3.Monitor(Only monitor the performance-NO configurations)

4.a Deployer (Deploy,start.,stop applications only)

4.b (configurator)---Create new configuration like server,jdbc,jms…resources

5.AdminsecurityManager (Only add existing user,delete the user)

6.isc admin(Only creating user without roles)

7.Auditor---Monitor the services(login)

|
SecurityConfigurationWizard(CredentialMapping)--------------------------->LDAP DB

ScreenShot:

You might also like