Sun GlassFish Web Space Server 10.0 OpenSSO Add-On Guide

ProcedureTo Map an OpenSSO Group to a Web Space Server Community

This procedure demonstrates how to map an OpenSSO group to a Web Space Server community. Note that, when using Access Manager or SunDS as the authentication provider, the general steps described in this procedure apply equally to mapping user roles and filtered roles to a Web Space Server community.

After mapping, any changes to the OpenSSO group or Web Space Server community will automatically be reflected in the mapped entity on the corresponding server.

  1. Launch the Community Mapper portlet, as described in To Launch the Community Mapper Portlet.

  2. Make sure the Role-CommunityMap tab is selected, and then choose GROUP as the OpenSSO Entity Type.

    Map OpenSSO Group to Web Space Server Community
  3. Specify the mapping parameters you want to use.

    • OpenSSO Realm – Name of an existing OpenSSO realm; in this example, a realm named opensso is used.

    • OpenSSO Entity – Name of an existing OpenSSO group; in this example, a group named finance is used. Note that a list of available groups pops up when you pause at the id= prefix. Note that the autocomplete feature adds the fully qualified group ID parameters; in this example, id=finance,ou=group,dc=opensso,dc=java,dc=net.

    • Community Name – Name of an existing Web Space Server community; in this example, a community named enterprisespace is used.

  4. Click Map to perform the mapping.

    The mapping definition is displayed in the list at the bottom of the Community Mapper portlet.