Sun OpenSSO Enterprise Policy Agent 3.0 Guide for IBM WebSphere Application Server 6.1/7.0 and WebSphere Portal Server 6.1

WebSphere Portal Server: Performing Global Configuration Tasks

Perform the following tasks only if you are also Performing Global Configuration Tasks for WebSphere Application Server 6.1/7.0:

WebSphere Portal Server: Adding an OpenSSO Enterprise Trust Association Interceptor to WebSphere Application Server

Follow the steps in Adding an OpenSSO Enterprise Trust Association Interceptor to WebSphere Application Server 6.1/7.0.

WebSphere Portal Server: Changing the Logout Link Actions for WebSphere Portal Server 6.1

This task provides a seamless user experience of single sign-off with OpenSSO Enterprise.

To Change the Logout Link Actions for WebSphere Portal Server 6.1

  1. Ensure that the WebSphere Application Server and WebSphere Portal Server 6.1 instances are running.

  2. Access the WebSphere administrative console by entering the following URL in the location field of a Web browser:

    http://example.com:admin_port/ibm/console

    where example.com is the name of the server and admin_port is the port assigned to the administrative console.

  3. Click Resources > Resources Environment > Resource Environment Providers.

  4. On the Resource Environment Providers page, make the appropriate selection, depending on your version of WebSphere Application Server and your portal environment:

    • For WebSphere Application Server Version 6.1, select the appropriate node or cluster from the scopes pull-down list, depending on your portal environment.

    • For WebSphere Application Server Version 7.0, select the appropriate node or cluster from the scopes pull-down list. Or uncheck the Show Scope selection drop-down checkbox and select one of the following options, depending on your portal environment:

      • If your portal is running as a single server, select Browse Nodes and select the node.

      • If your portal is installed in a cluster, select Browse Clusters and select the portal cluster.

  5. Select the “WP ConfigService” service.

  6. Click Custom Properties.

  7. Do the following, as required:

    • Set redirect.logout to true.

    • Set redirect.logout.ssl to true or false, depending upon the environment.

    • Set redirect.logout.url to the OpenSSO Enterprise logout URL. For example:

      http://opensso-host.example.com:8080/opensso/UI/Logout

    • When you are done, click Save at the top of the screen under Message(s).

  8. If you are running a cluster configuration, replicate your changes to the cluster.

WebSphere Portal Server: Enabling Global Security for WebSphere Application Server

If Global Security is not enabled, follow the steps in Enabling Global Security for WebSphere Application Server 6.1/7.0.

WebSphere Portal Server: Setting the Application Logout URI For the IBM Console

For each agent profile, including the agent profile for the WebSphere Application Server server1 instance and the WebSphere Portal Server WebSphere_Portal instance, perform the steps in Setting the Application Logout URI For the IBM Console.

WebSphere Portal Server: Enabling Cookie Reset for the Agent Profile

For each agent profile, including the agent profile for the WebSphere Application Server server1 instance and the WebSphere Portal Server WebSphere_Portal instance, perform the steps in Enabling Cookie Reset for the Agent Profile.

WebSphere Portal Server: Installing the Agent Filter for the WebSphere Application Server Administration Console

Perform the steps in Installing the Agent Filter for the WebSphere Application Server 6.1/7.0 Administration Console.