Sun Java System Access Manager Policy Agent 2.2 Guide for BEA WebLogic Server/Portal 9.2

Privileged Attribute Processing Properties

com.sun.identity.agents.config.default.privileged.attribute[]

com.sun.identity.agents.config.privileged.attribute.type[]

com.sun.identity.agents.config.privileged.attribute.tolowercase[]

com.sun.identity.agents.config.privileged.session.attribute[]

com.sun.identity.agents.config.privileged.attribute.mapping.enable

com.sun.identity.agents.config.privileged.attribute.mapping[]

· com.sun.identity.agents.config.default.privileged.attribute[]

Hot-swap enabled: No

This property is a list construct for listing privileged attributes to be granted to all users who have a valid Access Manager session.

· com.sun.identity.agents.config.privileged.attribute.type[]

Hot-swap enabled: No

This property is a list construct for listing privileged attribute types to be fetched for each user.

· com.sun.identity.agents.config.privileged.attribute.tolowercase[]

Hot-swap enabled: No

This property is a map construct that specifies whether the privileged attribute types are converted to lowercase.

Key Properties Affecting This Property

This property converts the attribute types assigned to the following property to lower case:

com.sun.identity.agents.config.privileged.attribute.type[]

· com.sun.identity.agents.config.privileged.session.attribute[]

Hot-swap enabled: No

This property is a list construct for listing session property names that hold privileged attributes for the authenticated user.

· com.sun.identity.agents.config.privileged.attribute.mapping.enable

Hot-swap enabled: No

This property is a flag that indicates whether the original value of an attribute is to be mapped to another value. This mapping might be necessary to satisfy container-specific restrictions on the character set being used in certain deployment descriptor files.

· com.sun.identity.agents.config.privileged.attribute.mapping[]

Hot-swap enabled: No

This property is a map property. A key of this map is that a privileged attribute's original value and its mapped value are used in a container-specific deployment descriptor file (or files). This mapping satisfies container-specific restrictions on the character set being used in the corresponding deployment descriptor files.

For information about setting this property, see Mapping Access Manager Roles to Principal Names.

Key Properties Affecting This Property

This property applies when the following property is set as shown:

com.sun.identity.agents.config.privileged.attribute.mapping.enable =
 true