| | | |
A |
|
| access control realm |
| | definition of ( ) |
| | realm mode ( ) |
| | when to use ( ) |
|
| access logs ( ) |
|
| Access Manager information tree |
| | access control realm ( ) |
| | and identity repository ( ) |
| | how realm data is stored ( ) |
| | what it does ( ) |
|
| account federation ( ) |
|
| account linking termination ( ) |
|
| account locking ( ) |
| | memory locking ( ) |
| | physical locking ( ) |
|
| Active Directory authentication module type ( ) |
|
| affiliation federation ( ) |
|
| agent, See policy agent |
|
| amLogging.xml ( ) |
|
| amSDK |
| | identity repository plug-in ( ) ( ) |
|
| Anonymous authentication module type ( ) |
|
| architecture |
| | access control realms ( ) |
| | changes in this release ( ) |
| | framework layer ( ) |
| | overview ( ) |
| | plug-ins layer ( ) |
|
| assertion, in SAML ( ) |
|
| auditing, See logging |
|
| authentication, See Authentication Service |
|
| authentication chaining ( ) |
|
| authentication context ( ) |
|
| authentication domain ( ) |
|
| authentication module types ( ) |
| | Active Directory ( ) |
| | Anonymous ( ) |
| | Certificate ( ) |
| | HTTP Basic ( ) |
| | JDBC ( ) |
| | Membership ( ) |
| | MSISDN ( ) |
| | RADIUS ( ) |
| | SecurID ( ) |
| | UNIX ( ) |
| | Windows Desktop Single Sign-On ( ) |
| | Windows NT ( ) |
|
| Authentication Service |
| | account locking ( ) |
| | authentication chaining ( ) |
| | authentication framework ( ) |
| | authentication level-based authentication ( ) |
| | authentication plug-in ( ) |
| | client detection ( ) |
| | configuration service ( ) |
| | core component ( ) |
| | core component descriptions ( ) |
| | definition of ( ) |
| | distributed authentication user interface ( ) ( ) |
| | FQDN name mapping ( ) |
| | general authentication service ( ) |
| | JAAS shared state ( ) |
| | module-based authentication ( ) |
| | organization-based authentication ( ) |
| | plug-in modules ( ) |
| | presentation layer ( ) |
| | process flow illustrated ( ) |
| | redirection URLs ( ) |
| | role-based authentication ( ) |
| | service-based authentication ( ) |
| | session upgrade ( ) |
| | user-based authentication ( ) |
| | user's view of ( ) |
| | validation plug-in ( ) |
| | web service, brief description ( ) |
|
| Authentication Web Service ( ) |
|
| authorization, See Policy Service |
| | | |
C |
|
| CDSSO, See cross-domain single sign-on |
|
| Certificate authentication module type ( ) |
|
| circle of trust ( ) |
|
| client APIs, brief description ( ) |
|
| Client Detection Service |
| | core component descriptions ( ) |
| | in authentication ( ) |
| | in authentication process flow ( ) |
|
| components, See core components |
|
| condition, in policy ( ) |
|
| cookies, used in sessions ( ) |
|
| core components |
| | Authentication Service ( ) |
| | in Access Manager, brief descriptions ( ) |
|
| cross-domain single sign-on |
| | as a type of user session ( ) |
| | definition of ( ) |
| | process flow illustrated ( ) |
| | user session ( ) |
| | | |
I |
|
| identity federation ( ) |
| | See also Liberty Alliance Project | |
| | Access Manager frameworks ( ) |
| | account federation ( ) |
| | authentication domain ( ) |
| | brief description of ( ) |
| | circle of trust ( ) |
| | core component descriptions ( ) |
| | definition of ( ) |
| | protocols flow ( ) |
| | SAML specifications ( ) |
| | web service, brief description ( ) |
| | web service consumer ( ) |
| | web service provider ( ) |
| | web services framework (ID-WSF) ( ) |
|
| identity federation framework (ID-FF) ( ) |
|
| identity provider introduction ( ) |
|
| identity repository management |
| | framework ( ) |
| | identity repository management plug-in ( ) |
|
| information tree, See Access Manager information tree |
|
| Interaction Service ( ) |
| | | |
P |
|
| PDP |
| | See policy decision point | |
| | in SAML ( ) |
|
| PEP, See policy enforcement point (PEP) |
|
| persistent cookie, definition of ( ) |
|
| Platform Service, core component descriptions ( ) |
|
| plug-ins |
| | amSDK ( ) ( ) |
| | Authentication Service ( ) |
| | delegation ( ) ( ) |
| | identity repository management ( ) |
| | plug-ins architecture ( ) |
| | policy response providers ( ) |
| | Policy Service ( ) |
| | service configuration ( ) ( ) |
|
| policy |
| | condition ( ) |
| | definition of ( ) |
| | normal policy ( ) |
| | policy rule ( ) |
| | referral policy ( ) |
| | subject ( ) |
| | types of policies ( ) |
|
| policy administrator ( ) |
|
| policy agent |
| | brief description ( ) |
| | definition of ( ) |
| | PEPs and PDPs ( ) |
|
| policy configuration service ( ) |
|
| policy decision point (PDP), definition of ( ) |
|
| policy enforcement point, definition of ( ) |
|
| policy organization administrator ( ) |
|
| Policy Service |
| | access control realm and policies ( ) |
| | authorization, definition of ( ) |
| | core component descriptions ( ) |
| | definition of ( ) |
| | general Policy Service ( ) |
| | normal policy ( ) |
| | policy, definition of ( ) |
| | Policy Configuration Service ( ) |
| | policy evaluation ( ) |
| | policy plug-in ( ) |
| | policy response provider plug-in ( ) |
| | referral policy ( ) |
| | types of policies ( ) |
| | web service, brief description ( ) |
|
| privileges, and delegation plug-in ( ) |
| | | |
S |
|
| SafeWord authentication module type ( ) |
|
| SAML ( ) |
| | about SAML specifications ( ) |
| | assertion ( ) |
| | definition of ( ) |
| | SAML Service ( ) |
| | web service, brief description ( ) |
|
| SAML authentication module type, authentication module ( ) |
|
| SAML Service |
| | core component descriptions ( ) |
| | overview of ( ) |
|
| secure logging ( ) |
|
| SecurID, authentication module ( ) |
|
| security mechanisms, in identity federation ( ) |
|
| service configuration plug-ins ( ) ( ) |
|
| Service Management Service ( ) |
|
| services ( ) |
| | Access Manager web services ( ) |
| | authentication ( ) |
| | identity federation ( ) |
| | Identity Repository Management Service ( ) |
| | logging ( ) |
| | policy ( ) |
| | services that power Access Manager ( ) |
|
| session, See user session |
|
| session data structure ( ) |
|
| session ID, See session token |
|
| session management, See User Session Management |
|
| Session Service, See User Session Management |
|
| session token ( ) |
|
| session upgrade, definition of ( ) |
|
| single sign-on |
| | as a type of user session ( ) |
| | definition of ( ) |
| | process flow illustrated ( ) |
| | user session ( ) |
|
| single sign-on and federation protocol ( ) |
|
| single sign-out protocol ( ) |
|
| SOAP Binding ( ) |
|
| SSO, See single sign-on (SSO) |
|
| subject, in policy ( ) |
|
| subrealm administrator ( ) |
|
| Sun Java System Directory Server |
| | as an identity repository ( ) |
| | legacy mode ( ) |
| | | |
U |
|
| UNIX authentication module type ( ) |
|
| user authentication, See Authentication Service |
|
| user session |
| | basic user session ( ) |
| | cookies ( ) |
| | definition of ( ) |
| | initial HTTP request ( ) |
| | session data structure ( ) |
| | session token ( ) |
|
| User Session Management |
| | basic user session, brief description ( ) |
| | core component descriptions ( ) |
| | cross-domain SSO, brief description ( ) |
| | definition of ( ) |
| | overview of ( ) |
| | session termination ( ) |
| | session validation ( ) |
| | single-sign on, brief description ( ) |
| | user sessions, types of ( ) ( ) |
| | web service, brief description ( ) |