Previous Contents Index Next |
iPlanet Portal Server Administration Guide |
Appendix B iPlanet Portal Server Attributes
The following tables represent attribute names and descriptions for the indicated component in the table title.
Platform-wide Authentication Attributes
Table B-1, lists the attributes that are platform-wide. You find them by clicking the Manage Platform Settings link on the iPlanet Portal Server page, then the Profiles->Authentication link on the right side of the window. No platform-wide attributes can be overridden at the domain or role level.
Super Administrator Authentication Attributes
Table B-2 lists authentication attributes for the Super Administrator profile. These may be found by clicking the links in the order specified:
Manage Administrators> (domain of interest)
Admin Role (under Super Admins)
Click the Show Advanced Options button at the bottom.
Domain Level Authentication Attributes
Some of the authentication attributes are set only at the domain level. B-3 lists the attributes that are domain-wide. Domain-wide attributes, can be customized by either a Domain Administrator or the Super Administrator.The links used to get to the domain-wide authentication attributes depend upon whether you are a Super Administrator or a Domain Administrator.
If you are a Super Administrator:
If you are a Domain Administrator:
Select Manage Roles and Users.
Select the proper Authentication module.
Change the attributes as needed.
Domain-wide Authentication Attributes
Requires a user profile to authenticate; may be used to deny access to users who do not already have profiles set.
Any user trying to authenticate from a specific domain gets the authenticators configured for that domain. You may instead want to ask for a userid and look up the profile for the user's authentication type(s).
List of strings a user may use to signal authentication which domain they are authenticating to.
When a user authenticates but does not have a user profile, this is the role they are assigned to.
First RADIUS server (hostname or IP address) for this domain.
Second RADIUS server (hostname or IP address) for this domain. Contacted if RADIUS Server1 does not answer. Optional.
The RADIUS shared secret assigned to the iPlanet Portal Server Server (also configured in the RADIUS server).
The port that the RADIUS Server uses to listen for authentication requests. The most common is 1645 (default), followed by 1812.
The SafeWord logging level (default 0 [none]). Other values: 1 (INFO), 2(ERROR), 4 (DEBUG), 5 (ALL)
The SafeWord log path. Default is /var/opt/SUNWips/debug/auth/safehelper.log, if logging level is non-zero.
An index indicating which SafeWord server to use for this domain. Set by the system during configuration time.
The port on which the SafeWord server listens (default 7482).
Path for the ACE/Client API to find the user configuration information (default /opt/ace/prog).
An index indicating which ACE/Server to use for this domain. Set during configuration time.
Name to associate with the SecurID Server Identifier (default Server000).
Path for the ACE/Client API to find the ACE/Server configuration file, sdconf.rec (default /opt/ace/data).
The maximum number of S/Key passphrases this user may create (default 100).
When a user is authenticated, they are redirected to this page. The default is the iPlanet Portal Server desktop.
Allows you to prevent a specific user from authenticating. Note that if a user already has a valid session, changing this attribute will not take effect until the next session. To kick the user off now, go to Manage Sessions in the menu side of the Administration Console and destroy the session.
LDAP Distinguished Name. For example, for sun.com: dc=sun, dc=com
See the section, Configuring LDAP Authentication.
See the section, Configuring LDAP Authentication.
See the section, Configuring LDAP Authentication.
See the section, Configuring LDAP Authentication.
See the section, Configuring LDAP Authentication.
Previous Contents Index Next
Copyright © 2000 Sun Microsystems, Inc. Some preexisting portions Copyright © 2000 Netscape Communications Corp. All rights reserved.
Last Updated May 04, 2000