BEA Logo BEA WebLogic Enterprise Release 5.0

  Corporate Info  |  News  |  Solutions  |  Products  |  Partners  |  Services  |  Events  |  Download  |  How To Buy

 

   WLE Doc Home   |   Security & Related Topics   |   Previous   |   Next   |   Contents   |   Index

Index

A

administration steps

certificate-based authentication 1-17

link-level encryption 1-4

the SSL protocol 1-12

username/password authentication 1-8

authentication

certificate-based 1-14

username/password 1-4

authorized users

defining 4-8

AUTHSRV

code example 4-3

configuring 4-2

described 1-5

use with username/password authentication 1-8

B

building

Secure Simpapp sample application 6-11

Security sample application 6-2

C

certificate authorities

defined 2-8

obtaining a digital certificate for 2-8

certificate-based authentication

administration steps 1-17

C++ code example 5-18

configuration illustrated 1-19

configuring 3-3

defining JNDI environment
properties 7-5

described 1-14

development process 1-17

how it works 1-15

illustrated 1-14

Java code example 5-20

programming steps 1-17

requirements 1-16

sample UBBCONFIG file 4-7

writing the client application 5-18

cipher suites

supported by the WLE product 3-7

compiling

client applications

Secure Simpapp sample
application 6-19

Security sample
application 6-9

server applications

Secure Simpapp sample
application 6-19

Security sample
application 6-9

concepts

AUTHSRV 1-5

certificate-based authentication 1-14

digital certificates 1-9

link-level encryption 1-3

SSL protocol 1-9

username/password authentication 1-4

configuring

a port for SSL communications 3-2

certificate-based authentication 3-3

host matching 3-3

setting session renegotiation 3-8

setting the encyrption strength 3-5

the SSL protocol

CORBA C++ ORB 3-2

CORBA Java ORB 3-2

IIOP Listener/Handler 3-2

CORBA C++ client applications

starting

Secure Simpapp sample
application 6-19

Security sample
application 6-10

CORBA C++ ORB

defining a port for SSL
communications 3-2

enabling certificate-based
authentication 3-3

enabling host matching 3-4

setting the encryption strength 3-5

CORBA Java client applications

starting

Secure Simpapp sample
application 6-19

Security sample
application 6-10

CORBA Java ORB

defining a port for SSL
communications 3-2

enabling certificate-based
authentication 3-3

enabling host matching 3-4

example of configuring
the SSL protocol 3-10

CORBA module

described 10-2

CORBA Module IDL 10-2

corbaloc URL Address format

described 5-5

corbalocs URL Address format

described 5-5

Credentials object

described 9-7

D

Data types

security module 10-4

deployment descriptor

specifying security roles 7-4

development process

certificate-based authentication 1-17

for security in EJBs 7-2

the SSL protocol 1-12

username/password authentication 1-7

digital certificates

certificate-based authentication 1-14

for principals 2-6

obtaining 2-5

publishing in LDAP 2-5

SSL protocol 1-9

troubleshooting 8-9

directory location of source files

Secure Simpapp sample
application 6-12,
6-14

Security sample application 6-3

E

EJBs

assigning security roles to methods 7-3

code example

certificate-based
authentication 7-10

username/password
authentication 7-10

depoyment descriptor 7-4

description of security 7-2

how authentication works 7-2

property keys for security 7-7

specifying certificate-based authentication 7-7

specifying username/password authentication 7-7

steps for adding security to 7-2

using URL Address formats 7-6

encryption

defining in the UBBCONFIG file 4-5

setting encryption strength 3-5

values 3-6

environment variables

APPDIR 6-5, 6-17

JAVA_HOME 6-5, 6-16

JDKDIR 6-6, 6-17

Secure Simpapp sample
application 6-5,
6-16

Security sample application 6-5

TOBJADDR 6-17

TUXCONFIG 6-6, 6-17

TUXDIR 6-5, 6-16

F

file protections

Secure Simpapp sample application 6-16

Security sample application 6-7

H

host matching

enabling 3-3

values 3-4


I

IIOP Listener/Handler

configuring session renegotiation 3-8

defining a port for SSL
communications 3-2

enabling certificate-based
authentication 3-3

enabling host matching 3-4

SEC_PRINCIPAL_LOCATION parameter 3-9

SEC_PRINCIPAL_NAME
parameter 3-9

SEC_PRINCIPAL_PASSVAR parameter 3-9

setting security parameters 3-8

setting the encryption strength 3-5

use with certificate-based
authentication 1-14

use with the SSL protocol 1-9

invocation_options_required method

C++ code example 5-22

described 5-21

Java code example 5-23

ISL command

configuring session renegotiation 3-8

enabling certificate-based
authentication 3-3

enabling host matching 3-4

example 3-9

setting the encryption strength 3-5

specifying a port for SSL communications 3-2

ISL parameter

Security sample application 6-10

J

JAVA_HOME parameter

Secure Simpapp sample
application 6-5,
6-16

JDKDIR parameter

setenv file 6-6, 6-17

JNDI environment properties

for certificate-based
authentication 7-5

for username/password
authentication 7-5

WLEContext.INITIAL_CONTEXT
_FACTORY 7-5

WLEContext.PROVIDER_URL 7-6

WLEContext.SECURITY
_AUTHENTICATION 7-7

JNDI factory

use in authentication 7-2

joint client/server applications

using the SSL protocol 3-2

L

LDAP directory service

directory structure 2-3

search filter file 2-3

use with certificate-based
authentication 1-16

use with the SSL protocol 1-11

use with WLE security 2-2

LDAP Search Filter file

modifying 2-3

stanzas used by SSL protocol 2-4

stanzas used for certificate-based authentication 2-4

tags 2-4

link-level encryption

administration steps 1-4

described 1-3

development process 1-4

how it works 1-3

illustrated 1-3

loading the UBBCONFIG file

Security sample application 6-8

M

makefile

Secure Simpapp sample application 6-15

Security sample application 6-9

O

OMG IDL

CORBA module 10-2

Security Level 2 module 10-7

Security module 10-4

SecurityLevel 1 module 10-6

TimeBase module 10-2

Tobj module 10-7

P

Peer Rules file

described 2-10

elements 2-10

example 2-10

syntax 2-11

PrincipalAuthenticator object

certificate-based authentication 9-6

described 9-5

using in client applications 5-6

WLE extensions 9-6

private keys

example 2-7

for principals 2-6

format 2-6

location 2-6

protocols

link-level encryption 1-3

SSL 1-9

R

runme command

description 6-19

files generated by 6-20, 6-21

S

SEC_PRINCIPAL_LOCTION parameter

defined 3-9

SEC_PRINCIPAL_NAME parameter

defined 3-9

SEC_PRINCIPAL_PASSVAR parameter

defined 3-9

Secure Simpapp sample application

building 6-11

changing protection on files 6-16

compiling the Java client
application 6-19

compiling the Java server
application 6-19

description 5-16

development process 5-17

illustrated 5-16

loading the UBBCONFIG file 6-19

locations of files 6-12

required environment variables 6-5, 6-16

runme command 6-19

setting up the work directory 6-12

source files 6-12, 6-14

starting the Java client application 6-24

starting the Java server application 6-24

using the client applications 6-24

Security Level 2 module

described 10-7

Security module

described 10-4

SECURITY parameter

defining in UBBCONFIG file 4-4

setting for username/password authentication 1-8

values for 4-4

security roles

assigning to EJB methods 7-3

defining in deployment descriptor 7-4

syntax rules 7-4

Security sample application

building 6-9

changing protection on files 6-7

compiling client applications 6-9

compiling server application 6-9

description 5-6

illustrated 5-7

initializing the database 6-8

ISL parameter 6-10

loading the UBBCONFIG file 6-8

location of files 5-7

makefile 6-9

PrincipalAuthenticator object 5-6

SecurityCurrent object 5-6

setenv file 6-8

setting up the work directory 6-3

source files 6-3

tmloadcf command 6-8

SecurityCurrent object

described 9-9

using in client applications 5-6

SecurityLevel 1 module

described 10-6

source files

Secure Simpapp sample
application
6-14

Security sample application 6-3

SSL parameters

SEC_PRINCIPAL_LOCATION 1-12

SEC_PRINCIPAL_NAME 1-12

SEC_PRINCIPAL_PASSVAR 1-12

SSL protocol

administration steps 1-12

configuration illustrated 1-13

described 1-9

development process 1-12

how it works 1-9

illustrated 1-9

requirements 1-11

support

documentation xiv

technical xiv

T

TimeBase module

described 10-2

TimeBase Module IDL 10-2

tmboot command

Secure Simpapp sample application 6-24

Security sample application 6-9

tmloadcf command

Secure Simpapp sample application 6-19

Security sample application 6-8

Tobj module

described 10-7

tpgrpadd command

defining security groups 1-8, 4-9

tpusradd command

defining users for security 1-8, 4-9

troubleshooting

bootstrapping problems 8-6

callback objects 8-9

certificate-based authentication problems 8-5

configuration problems 8-8

digital certificates 8-9

IIOP Listener/Handler startup problems 8-7

ORB initialization problems 8-3

tracing 8-1

Ulog file 8-1

username/password
authentication problems 8-4

Trusted Certificate Authority file

described 2-8

example 2-8

TUXCONFIG parameter

setenv file 6-6, 6-17

TUXDIR parameter

Secure Simpapp sample
application 6-5,
6-16

U

UBBCONFIG file

configuring the authentication
server 4-2

defining a security level 4-3

defining link-level encryption 1-4

defining security parameters for
the IIOP Listener/Handler 3-9

example of certificate-based authentication 4-7

example of username/password authentication 4-5

link-level encryption 1-4

Secure Simpapp sample application 6-19

Security sample application 6-4

setting parameters for security 4-2

setting the encryption 4-5

username/password authentication 1-8

URL Address formats

certifcate-based authentication 1-15

corbaloc 5-2, 5-5

corbalocs 5-2, 5-5

described 5-2

Host and Port 5-4

syntax 5-3

the SSL protocol 1-10

username/password authentication 1-22

using with EJBs 7-6

username/password authentication

administration steps 1-7

application password 1-5

C++ example

SecurityLevel2 PrincipalAuthenticator 5-9

Tobj PrincipalAuthenticator 5-12

defining JNDI environment
properties 7-5

defining users and groups 1-8

described 1-4

development process 1-7

how it works 1-5

illustrated 1-5

interfaces explained 5-8

Java example

SecurityLevel2
PrincipalAuthenticator
5-10

Tobj PrincipalAuthenticator 5-14

programming steps 1-7

sample UBBCONFIG file 4-5

system authentication 1-5

writing the client application 5-7

W

WLE domain

adding security to 5-6

WLE Security model

accessing objects 9-3

administrative control 9-3

authenticating principals 9-2

components 9-4

Credentials object 9-7

PrincipalAuthenticator object 9-5

SecurityCurrent object 9-9

described 9-2

WLE Security Pack

described 2-2

use with certificate-based authentication 1-16

use with SSL protocol 1-11

WLEContext.
INITIAL_CONTEXT_FACTORY property 7-5

WLEContext.
PROVIDER_URL property 7-6

WLEContext.
SECURITY_AUTHENTICATION property 7-7