Sun Java Enterprise System 2005Q4 Installation Planning Guide

Choosing Configuration Values for Delegated Administrator

For each Delegated Administrator instance in your solution, you must input values that configure the instance to interoperate with the other components in the solution. For example, Delegated Administrator manages LDAP directory entries. Therefore, Delegated Administrator must be configured to log in Directory Server instance that stores user and group data. Use Table 3–14 to help you choose configuration values.

Table 3–14 Key Configuration Values for Delegated Administrator Instances

Input Field 

Choosing a Value for Your Solution 

Delegated Administrator Utility, Delegated Administrator Console, Delegated Administrator Server 

Select the subcomponents specified in the deployment architecture. For more information, see Analyzing a Deployment Architecture and Distributed Subcomponents.

Hostname and Port 

Use these fields to specify the Access Manager instance used in your solution. Hostname is the fully qualified domain name of the computer running Access Manager. Port is the port on which Access Manager listens for connections. The port was assigned when Access Manager was configured. For more information, see Table 3–8.

Default Domain 

Specify the default email domain defined byMessaging Server configuration. This is specified as the default email domain for user data managed by Delegated Administrator. For more information, see Table 3–9.

Default SSL Port 

Assign the port on which Delegated Administrator listens for connection requests. 

Web Container: Web Server, App Server 7.x, App Server 8.x 

Select the web container used in your solution. 

Server Root Directory, Server Instance Identifier, Virtual Server Identifier, HTTP Port 

If you are installing Delegated Administrator and Web Server together, use these fields to specify how Web Server is installed. 

If you are installingDelegated Administrator on a computer where Web Server is already installed, use these fields to specify an existing Web Server instance. 

 

If you are installing Delegated Administrator and Application Server together, use these fields to specify how Application Server is installed. 

If you are installingDelegated Administrator on a computer where Application Server is already installed, use these fields to specify an existing Application Server instance. 

Domain Separator 

 

Access Manager Base Directory 

Specify the directory where the Access Manager instance used in your solution is installed. This can be a directory on the remote computer you specified earlier in the configuration process. What if Access Manager is load balanced? 

LDAP URL, Bind As, Password 

Use these fields to specify the Directory Server instance used in your solution. LDAP URL is in the form http://directory_hostname:directory_port, where directory_hostname specifies the computer running Directory Server, and directory_port is the port assigned for connection requests when the Directory Server instance was configured. Bind As, and Password are the directory manager account and password. For more information, see Table 3–5.

Access Manager Top Level Administrator: Username and Password 

Use the top-level administrator account for the Access Manager instance used in your solution. Username is always amadmin, Password was assigned when Access Manager was configured. For more information, see Table 3–8.

Access Manager Internal LDAP Authentication Password: Username and Password 

Use the LDAP user account for the Access Manager instance used in your solution. Username is always amldapuser. Password was assigned when Access Manager was configured. For more information, see Table 3–8.

Enter Org DN 

Specify the LDAP organization (directory tree branch) your solution is using for user and group data. This is the organization created by Messaging Server configuration. For more information, see Table 3–9. The components in your solution look up user data in this LDAP organization for authentication and authorization. Delegated Administrator is used to manage user and group data in the same LDAP organization.

Top Level Administrator for the Default Organization: Username and Password 

Specify a privileged administrator account for Delegated Administrator. Administrators who log in to Delegated Administrator with this account have unrestricted privileges, included the ability to create lower-level administrator accounts. 

Load Sample Service Packages and Load Sample Organizations 

If you select these options, the configuration wizard adds sample service packages and organizations to the directory. You can use the samples to develop your own.