Oracle® Communications ASAP Security Guide
Release 7.2
E28042-01
  Go To Table Of Contents
Contents

Previous
Previous
 
Next
Next
 

3 Implementing ASAP Security

This chapter explains the security features of Oracle Communications ASAP. See ASAP System Administrator's Guide for more information on the ASAP security functionality.

Configuring WebLogic Server Security

ASAP uses the LDAP server included with the WebLogic Server software to manage default ASAP users, groups, roles, and methods. For more information about this embedded LDAP server, see the WebLogic Server documentation.

Configuring Authentication Providers for ASAP

During the ASAP installation process, the ASAP installer creates default ASAP users, groups, roles, and methods in the embedded LDAP authentication provider included with the ASAP WebLogic server. You can use this authentication provider to configure the default ASAP users, groups, roles, and methods, or add, delete, or modify your own users, groups, roles, and methods.

ASAP also supports external LDAP provides, such as the Oracle Internet Directory.

Managing ASAP WebLogic Server User Security

ASAP supports only the default WebLogic server myrealm security realm. Using security realms other than myrealm, disabled all ASAP WebLogic-based features.

ASAP administrators can configure user password policies through the WebLogic Administration Console and the password policy utility page. For more information, see ASAP System Administrator's Guide.

Configuring ASAP Server and Database Credential Security

Secure data must be stored in a secure location and distributed to authorized users. The ASAP security system governs how secure data is managed and ASAP diagnostics files are secured. This security system includes:

Configuring Security for Network Elements Communication

NE credentials (also called custom secure class B data) used primarily by NEPs to establish network connections to NEs must be stored in a secure location and distributed to authorized users. An ASAP administrator can store NE credentials using ASAP APIs or the command line ASAP security tool (asap_security_tool).

The ASAP security tool supports the following features to protect NE credentials: