Introduction
Document Scope and Audience
Guide to this Document
Related Documentation
Securing Web Servers
Overview
Single Sign-On
Constraints and Limitations
Prerequisites
Integration Tasks
Define the Security Providers
Define Web Server Resources
Define Policies
Authorization Policies
Role Mapping Policies
Distribute the Policies
Set Up and Test the Sample Application
Implementing Single Sign-On with ALES Identity Asserter
Securing WebLogic Servers
Securing WebLogic Server Applications
Securing Administrative Access to WebLogic Server
Prerequisites
Integration Tasks
WebLogic 8.1 Security Providers
WebLogic 9.x/10.0 Security Providers
WebLogic Administrative User
WebLogic Server Resources
Policies
Running WebLogic Server as a Service
Setting Up WLS SSM on a WebLogic Cluster
Topology
Steps
Securing WebLogic Workshop Applications
Overview
Integration Tasks
Set Up the Annotations Plug-in
Using OES Annotations in a WebLogic Bean Class
Add OES Annotations to the WebLogic Bean Class
Add Information to the Project
Export the Policy File from Workshop
Define Policies for the Imported Policy File
OES Tag Library for Workshop
Prerequisites
Library Tags
Integration Tasks
Add the Tag Library to Workshop
Using OES Tags in JSP Pages
Define the Policies to Secure JSP Components
Deploy the JSP Application
Tag Library Reference
isAccessAllowed
isAccessNotAllowed
isAccessAllowedQueryResources
getUserRoles
isUserInRole
setSecurityContext
recordEvent
Attribute
Securing Oracle Data Service Integrator
Overview
Use-Case
Prerequisites
Integration Tasks
Define Security Providers
Enable ODSI Elements for Access Control
Define ODSI Identities in OES
Define ODSI Resources in OES
RTLApp Application Resources
ODSI Resources
Define Policies for ODSI
Distribute Policies
Pre-Processing Data Redaction
Pre-Processing Response Types
Required OES Response Attributes
Additional Integration Tasks
Post-Processing Data Redaction
ODSI Security XQuery Functions
OES Java Methods
Policies Returning Attributes to ODSI
Defining a Security XQuery Function
Integrating the OES Java Methods
OES Security XQuery Function
Securing WebLogic Portal Applications
Overview
Use-Case Scenario
Constraints and Limitations
Prerequisites
Integration Tasks
Define the Security Providers
Define Portal Identities in OES
Define Portal Resources in OES
Realm Resource
Shared Resources
Console Resources
PortalApp Resources
Define Policies
Authorization Policies
Role Mapping Policies
Policies for Visitor Entitlements
Policies for Desktops
Policies for Books
Policies for Pages
Policies for Portlets
Policies for Look and Feel
Policies for Portlets using Instance ID
Storing and Versioning Policy with Oracle Enterprise Repository
Overview
Integration Tasks
Set OER Import and Export Properties
Import Policy Asset Type into OER
Manage Policy Assets
Versioning OES Assets
Importing/Exporting Policy Asset Data
Import/Export Configuration Files
Securing Oracle Service Bus Runtime Resources
Overview
Prerequisites
Initial Configuration
Security Providers
OSB Resources
Service Bus Identities
Policies for OSB
Authorization Policies
Role Mapping Policies
Distributing Changes
Verifying SSM Configuration Using PerfDBAuditor
Integrating Oracle Access Manager as an Authentication Provider
Configuring the Administration Server
Configuring the Security Service Module
Securing Microsoft Office SharePoint Server (MOSS) Resources
Overview
Software Requirements
Install the SharePoint SSM
Configure the SharePoint SSM
Configure the Web Service SSM
Import SharePoint Resources
Configure the SharePoint Server
Automated Configuration
Manual Installations
Modify SharePoint Web Configuration
Deploy OES Authorization in SharePoint
Modify SSM Configuration
Create SharePoint Resources in OES
Sample Identity Asserter Configuration
Policy Updates
SSM Configuration Updates
Adding New Identity Assertion Types
SharePoint Configuration Updates
Uninstall OES-SharePoint Integration
OES Adapter for Sun Identity Manager
Set Up OES Resource in Sun Identity Manager
Enable Active Sync for OES Resource
Using the WebLogic 9.x SSM
Using the Weblogic 8.1 SSM
Set Up Active Sync in Identity Manager