�A�� Microsoft Windows �� Sun Java System Access Manager ��������

�A�Ω� Microsoft Windows �� Sun Java™ System Access Manager ��������

���� 7

��󸹽X�G819-5804

���u��������v�]�t�i�H�b���A�Ω� Windows �� Sun Java System Access Manager 7 2005Q4 �����o��ɨ�o�����n��T (��Ӭ� Sun Java System Identity Server)�C���B�N���Фw�������D�M����H�Ψ�L��T�C�w�˩M�ϥΦ��������e�A�Х�\Ū�����C

����������̷s�����i�H�b Sun Java System ��������Ghttp://docs.sun.com/app/docs/prod/entsys.05q4 �P http://docs.sun.com/app/docs/prod/entsys.05q4?l=zh_TW�C�w�˻P�]�w�n�餧�e���s���A�éw���˵�̷s����������P���~���C

����������]�A�U�C�U�`�G

����󴣨ѤF��O�t�Ӫ� URL �Ψ�L�����T�����ѦҡC


�Ƶ�       

Sun ��󥻤�󤤩Ҵ��Τ���O�t�Ӻ���ϥΤ��Ӿ���d��CSun �������θ귽���� (�γz�L���̩Ҩ�o��) ��󤺮e�B�s�i�B���~�Ψ�L��Ƥ����I�ѡA�]���Ӿ���d��C���]�ϥΩΨ̾a������θ귽���� (�γz�L���̩Ҩ�o��) ��󤺮e�B���~�ΪA�Ȧӳy�����γs�a���ͪ���کΦW�q�W���l�a�ηl���ASun �����t�d�A�]���Ӿ���d��C



��������׭q��{�O��

�� 1  �׭q��{�O�� 

���

�ܧ󻡩�

2006 �~ 2 ��

�������C

2005 �~ 11 ��

��t�ժ��C


��� Access Manager 7

Sun Java System Access Manager (Access Manager) �O Sun Identity Management ��¦�[�c���@����A�i���´�޲z��~�����ξ�ӥ�~���~ (B2B) ����춡�� Web 3�ε{���M��L�귽���w���s��CAccess Manager ���ѥH�U�D�n�\��G

���`�]�A�G

Access Manager 7 ���s�W�\��

���������s�W�\��p�U�G

Access Manager �Ҧ�

Access Manager 7 2005Q4 �]�t�u�d��v�Ҧ��P�u�¦��v�Ҧ��C��ؼҦ��Ҥ䴩�G

�H�U���Υ����ϥΡu�¦��v�Ҧ��G

�s�� Access Manager �D���x

Access Manager �D���x�w�w�惡�����i��F���s�]�p�C��O�A�p�G Access Manager �P Portal Server�BMessaging Server�BCalendar Server�BInstant Messaging ��Delegated Administrator �@�P���p�A�h������u�¦��v�Ҧ��U�w�� Access Manager �èϥ� Access Manager 6 2005Q1 �D���x�G

�p�ݧ�h��T�A�аѾ\�ۮe�ʰ��D�C

�ѧO�x�s�w

Access Manager �ѧO�x�s�w�]�t�P�ϥΪ̡B�s�դΨ��ⵥ�����ѧO�����T�C�z�i�ϥ� Access Manager �Ψ�L�G�ز��~�A�p Sun Java System Identity Manager �ӫإߩM���@�ѧO�x�s�w�C

�b���������A�ѧO�x�s�w�i�`�n�� Sun Java System Directory Server �� Microsoft Active Directory�CAccess Manager �i�㦳���ѧO�x�s�w��Ū��/�g�J�s���v�ΰ�Ū�s���v�C

Access Manager ��T��

Access Manager ��T��]�t�P�t�Φs������T�C�C�� Access Manager ��ҳ��|�b Sun Java System Directory Server ���'O�إ߻P���@�@�Ӹ�T��C�@�� Access Manager ��T��i�㦳���W�� (�=X)�CAccess Manager ��T��]�t�d�� (���n�ɤ]�]�t�l�d��)�A�U�����p�`�N�i�满��C

Access Manager �d��

�d��M��󪺤l�d�򳣬O Access Manager ��T�𪺤@���!A�]�t�U�C�w�q�ϥΪ̻P/�θs�ն��X���t�m��T�G�ϥΪ̻{�Ҥ覡�B�ϥΪ̥i�H�s��귽�H�ή֭�ϥΪ̦s��귽��3�ε{���i�Ϊ���T�C�d��Τl�d��]�i�]�t��L�t�m��T�A�䤤�]�A�G����t�m�B�K�X���]�t�m�B���q�@�~�t�m�B�D���x�t�m�ΨϥΪ̳ߦn�]�w�C�d��Τl�d��i�H���šC

�z�i�ϥ� Access Manager �D���x�� amadmin CLI ���ε{���ӫإ߽d��C�p�ݧ�h��T�A�аѦҥD���x�u�W����ΡuSun Java System Access Manager 7 2005Q4 �޲z��n�v������ 14 ���uamadmin ��O��u��v�C

���q�@�~�e�����ܧ�

Access Manager ���Ѥ@�� Web �e�����W�߶��q�@�~�e�����@�A�䤤�H Sun Java System Message Queue (Message Queue) �����q�T�N�z�{���A�H Sleepycat Software, Inc. �}�o�� Berkeley DB �������q�@�~�x�s��Ʈw�CAccess Manager 7 2005Q4 ���W�j�\��]�A�G�t�m���q�@�~�e������Ҫ� amsfoconfig.bat�C

�p�ݧ�h��T�A�аѾ\�uSun Java System Access Manager 7 2005Q4 Deployment Planning Guide�v�����uImplementing Access Manager Session Failover�v�C

���q�@�~�S���ܧ�q��

���q�@�~�S���ܧ�q���\��i�� Access Manager ��S�w���q�@�~�S�ʵo���ܧ�ɡA�ǰe�q�����S�w��ť�{���C�b Access Manager �޲z��D���x���ҥ� [�ҥίS���ܧ�q��] �ݩʮɡA���\��K�ͮġC�Ҧp�A�b�榸�n�J (SSO) ��Ҥ��A�h��3�ε{���i�H�@�Τ@�� Access Manager ���q�@�~�C�� [�q���S��] �M�椤�w�q���S�w���q�@�~�S�ʵo���ܧ�ɡAAccess Manager �N�|�ǰe�q�����Ҧ��w��U����ť�{���C

�p�ݧ�h��T�A�аѾ\�uSun Java System Access Manager 7 2005Q4 Deployment Planning Guide�v�����uEnabling Session Property Change Notifications�v�C

���q�@�~�t�B����

���q�@�~�t�B����\��i�� Access Manager �޲z�� (amadmin) �]�w [�ϥΤ����ϥΪ̶��q�@�~] �ݩʡA�H����\�ϥΪ̨ϥΪ��̤j�P�B�B�@���q�@�~�ơC�޲z��i�b����h�ų]�w�Ҧ��ϥΪ̪����q�@�~�t�B����A�γ]�w�ȾA�Ω�@��μƦ�S�w�ϥΪ̤���@����A�p��´�B�d��B����ΨϥΪ̪����q�@�~�t�B����C

�̹w�]�A�|���� (�u��v) ���q�@�~�t�B����A��޲z��i�N Access Manager �޲z��D���x�� [�ҥΰt�B����] �ݩʳ]�w���ҥΡA�ӱҥΥ��̡C

�Y�ϥΪ̥κɶ��q�@�~����t�B�A�޲z��]�i�N [�Y�κɶ��q�@�~���t�B�N�ɭP] �ݩʳ]���H�U�ȡA�Ӱt�m�t�B�κɮɭn�i�檺�ʧ@�G

[�K�����h�޲z�����ˬd] �ݩʷ|��w���q�@�~����t�B�O�_�A�Ω��u���h�޲z���v���޲z��C

�p�ݧ�h��T�A�аѾ\�uSun Java System Access Manager 7 2005Q4 Deployment Planning Guide�v�����uSetting Session Quota Constraints�v�C

�4����{��

�4����{�ҪA�Ȥ��\�b�Dĵ�ٰϰ� (DMZ) ���ʦ������ϥΪ��ѧO�P���ҡC�b�� AccessManager �i��{�Ҫ����q�A�ϥΪ̥������ѨϥΪ��ѧO��T�P���ҡC�󦹳B�z�{�Ƕ��q�A�|�V�ϥΪ���� Access Manager �A�� URL�C�ϥΥN�z��A���i�קK���ͦ��ؼ��S���ΡA��O�Y�dz��p������ϥΥN�z��A���C

�j���&w�������p�����\�N�z�{�� (�Ӧ� DMZ �h) �����N�ШD���s�ɦV�� Access Manager ��A�� (���w�����ϰ줤�A��������O�@)�A�]���o�O�u�4����{�ҡv�A�Ȫ��򥻻ݨD�C

���\��O�H J2EE Web 3�ε{�����Φ��b���P servlet �ۮe�� Web �e�����i�泡�p�ð��C�u�{�ҪA�ȡv�i�㦳���ݻ{�Ҫ�ܻP�^��[�c (�Y���4����{�� UI)�A��i�H J2EE Web 3�ε{�����Φ����p�b DMZ �h (�󥼰�� Access Manager ����W)�A�M��b��ڻ{�ҮɻP��ݦ�A���i��q�T�C�u�4����{�ҡv�A�ȳz�L���� API ���ڻ{�ҮɻP�{�Ҧ�A�� (����) �q�T�C

�h���{�ҼҲչ�Ҥ䴩

�Ҧ��{�ҼҲ� (�w�]�t�m) ���w����䴩��䴩�D���x UI ���l�Ҧ��C�w��C�ӼҲ����� (�w��J���Ҳ����O) �'O�i�H�إߦh�ӻ{�ҼҲչ�ҡC�Ҧp�A�� LDAP �Ҳ��������W�٬� ldap1 �P ldap2 ����ҦӨ��A�C�ӹ�ҧ��i��V���P�� LDAP �ؿ��A���C��W�ٻP�����W�٬ۦP���Ҳչ�Ҩ�ƦV�U�ۮe�ʡC��I�s��k���Gserver_deploy_uri/UI/Login? module=module-instance-name�C

�{�ҡu�w�R�W�t�m�v�Ρu�챵�v�W�٪Ŷ�

�|�b��´/�d��U�'O�إߦW�٪Ŷ��A�䬰�{�ҼҲչ�Ҥ��챵�C�P�@���챵�i�H���ƨϥΨë�w�ܡu��´/�d��v�B�u����v�Ρu�ϥΪ̡v�C�u�{�ҪA�ȡv��ҵ��P��u�{���챵�v�C��I�s��k���Gserver_deploy_uri/UI/Login? service=authentication-chain-name�C

�����ҲռW�j�\��

�ӤH���ݩ�

���F�u�W�h�v�B�u�D���v�Ρu���v�H�~�A�{�b�����]���ӤH���ݩ� (IDResponseProvider)�C�q�������ǰe�ܥΤ�ݪ������M�w�{�b�]�A�A�ε�������󵦲��^3���ӤH���ݩʡC��䴩���ӤH���ݩ��������H�U��ءG

�u��������I (�N�z�{��)�v�q�`�|�N�o���ݩʭȥH HTTP ���Y�BCookie �νШD�ݩʪ��Φ��໼�ܨ�O�@��3�ε{���C

Access Manager 7 2005Q4 ���䴩�Ȥ�ۦ��@���u�^3���Ѫ̡v�����C

���q�@�~�S�ʱ��

���q�@�~�S�ʱ���@ (SessionPropertyCondition) �|�ھڨϥΪ̪� Access Manager ���q�@�~���]�w���S�ʭȡA�M�w�����O�_�A�Ω�Y�ӽШD�C�����ɡA�u���b�ϥΪ̪� Access Manager ���q�@�~���C�ӯS�ʭȩ��󤤬Ҧ��w�q�ɡA���~�|�Ǧ^�utrue�v�C�Y��󤤱N�S�ʩw�q����h���ȡA�h��󤤥u�ݦC�X�ϥΪ̶��q�@�~�S�ʪ��@�ӭȫK�w����C

�����D��

�����D����@ (Access Manager �ѧO�D��) ���\�z�ϥΤw�t�m�ѧO�x�s�w�������ذ��������D���ȡC

�����ץX

�z�i�ϥ� amadmin ��O�A�H XML �榡�N�����ץX�CamAdmin.dtd �ɮפ����s���� GetPolices �P RealmGetPolicies �䴩���\��C

�������A

�{�b�����㦳���A�ݩʡA�i�N��]���ϥΤ��ΫD�ϥΤ��C�������ɷ|�����D�ϥΤ��������C

���I�t�m

Access Manager 7 2005Q4 �޶i�F�u���I���!v�A�i���ѹ� Access Manager ���p���������t�m�޲z�C�N Access Manager �t�m�����I�ɡA�Τ�ݽШD�@�߷|�q�L�t��ž��A�p���i²�Ƴ��p�{�ǨøѨM�p�Τ�ݩM��� Access Manager ��A�������������j�����D�C

�p�ݧ�h��T�A�аѾ\�uSun Java System Access Manager 7 2005Q4 Deployment Planning Guide�v�����uConfiguring an Access Manager Deployment as a Site�v�C

�j�q�p�X

Access Manager 7 2005Q4 ��~�]����~�X�@�٦�3�ε{�����Ѥj�q�p�X�ϥΪ̱b�����\��C���e�A�A�ȴ��Ѫ� (SP) �P�ѧO���Ѫ� (IDP) ���b�����p�X�ݭn�C��ϥΪ̤'O�s�� SP �P IDP �����I�B�إ߱b�� (�Y�|���إ�)�B�M��z�L Web �s���N��ӱb���p�X�_�ӡC�p�����B�z�{�ǫD�`�ӮɡC�ӥB��{���b�������p�ι�N������@�ѧO���Ѫ̡A�ΨϥΨ�٦񤧤@�����{�Ҵ��Ѫ̪����I�Ө��A���@�w���A�X���覡�C

�p�ݧ�h��T�A�аѾ\�uSun Java System Access Manager 7 2005Q4 Federation and SAML Administration Guide�v�C

�O��W�j�\��

Access Manager 7 2005Q4 �]�t�ƭӷs���O��W�j�\��G


�`�N     

��Ʈw���|�񥭭��ɮװO��j�C�]���A�Ф��n�b�ШD���n�D�^���Ʈw��椺���Ҧ��O��A�]����Ƽƶq�L�j�A�|��өҦ� Access Manager ��A���귽�C


�w��P�n��ݨD

������ Access Manager �ݭn�H�U�w��P�n��C

�� 2  �w��P�n��ݨD 


����

�ݨD

�@�~�t��

Microsoft Windows 2000 Advanced Server, Service Pack 4

Microsoft Windows 2000 Professional

Microsoft Windows 2003 Enterprise Server

RAM

512 MB

�ϺЪŶ�

250 MB


�䴩���s��

������ Access Manager �䴩�U�C�s��G

�� 3  �䴩���s��

�s��

���x

Microsoft Internet Explorer™ 5.5 SP2

Windows™ 2000

Microsoft Internet Explorer 6.0

Windows 2000�B

Windows XP

Mozilla 1.7.1

Solaris OS ���� 9 �� 10

Java Desktop System

Windows 2000

Red Hat™ Linux 8.0

Netscape™ 7.0

Solaris OS ���� 9 �� 10

Java Desktop System

Windows 2000

Red Hat Linux 8.0


���������ץ�����~

�L�C


���n��T

�����`�]�t���]�t��֤߲��~��󤤪��̷s��T�C���`�]�t�H�U�D�D�G

�ۮe�ʰ��D

Access Manager �¦��Ҧ�

Access Manager 7 2005Q4 �i�t�m����ؼҦ��G

�Y�n�N Access Manager �P Portal Server�BMessaging Server�BCalendar Server�BInstant Messaging �� Delegated Administrator �@�P�w�ˡA�h������� Access Manager �ۮe (6.x) �����G

�p�ݧ�h��T�A�аѾ\�uAccess Manager �w�������v�C

�w�ˮɦ۰ʰt�m

�b���ﶵ���A�w�˵{���|�N Access Manager �t�m���¦��Ҧ��C

�w�˫��ʰt�m

�p�G�z��� Java ES �w�˵{���ÿ�� [�w�˫��ʰt�m] �ﶵ�A�h������� amconfig.bat �H�K�b�w�ˤ���t�m Access Manager�C

�p�n��ܬۮe (6.x) �w�������A�Цb�z���t�m�{���ɿ�J�ɮ� (AMConfigurator.Properties) ���]�w�U�C�ѼơG

AM_REALM=disabled

CONSOLE_DEPLOY_URI=/amconsole

�p�n��ܼW�j�Ҧ��G

AM_REALM=enabled

CONSOLE_Deploy_URI=/amserver/console

�p�ݦ���z�L��� amconfig.bat �Ӱt�m Access Manager ����h��T�A�аѾ\�uSun Java System Access Manager �޲z��n�vhttp://docs.sun.com/doc/819-1941�C

�P�w Access Manager �Ҧ�

�Y�n�P�w��檺 Access Manager 7 2005Q4 �w�ˬO�b�u�d��v�Ρu�¦��v�Ҧ��U�t�m���A�ЩI�s�G

http(s)://host:port/amserver/SMSServlet?method=isRealmEnabled

���G���G

Access Manager �����N�z�{��

�U����ܡu�����N�z�{���v�P Access Manager 7 2005Q4 �Ҧ����ۮe�ʡC

�� 4  �����N�z�{���P Access Manager 7 2005Q4 �Ҧ����ۮe��

�N�z�{���P����

�ۮe���Ҧ�

Web �P J2EE �N�z�{���A���� 2.2

�¦��Ҧ��P�d��Ҧ�

Web �N�z�{���A���� 2.1

�¦��Ҧ��P�d��Ҧ�

J2EE �N�z�{���A���� 2.1

�ȭ��¦��Ҧ�

�w�˪`�N�ƶ�

Access Manager �w�˪`�N�ƶ��]�A�U�C��T�C

Access Manager �w������

��� Java ES �w�˵{���ɡA�z�i�H�b�u�w�ˮɦ۰ʰt�m�v�Ρu�w�˫��ʰt�m�v�Ҧ����w�� Access Manager 7 2005Q4�C

�p�G�z�H�L�T���Ҧ��� Access Manager amconfig.bat �w�� Java ES�A�Цb���A�ɩΰt�m�{���ɿ�J�ɮפ��]�w�o���ܼơGAMConfig.Properties�G

Access Manager ���ɯŻ���

�Y�z�n�q���ª������ɯŬ� Access Manager 7 2005Q4�A�Ш̴`�uSun Java Enterprise System 2005Q4 Upgrade Guide for Microsoft Windows�v�����ɯŻ���A��}�O�Ghttp://docs.sun.com/app/docs/doc/819-4461�C

���ݻ٤H�h���Ѫ��L��ê�\��

����o���C��o�G�H�Ӥw�o�檺�L��ê�\��A�ЦV Sun �h�̾ڬ��uSection 508�v�k�W�i�沣�~���ұo�����G���A�H�K�M�w�̾A�X�G�p�L��ê�\��ѨM��ת������C�H�U��}�N����3�ε{������s�����Ghttp://sun.com/software/javaenterprisesystem/get.html�C

�p�ݦ��� Sun �b�L��ê�\��譱�����G����T�A�Ц� http://sun.com/access�C


�w�����D�M����

�����`�������o��ɪ��w�����D�M�ѨM��k (�p������)�C

�ۮe�ʰ��D

Java ES 2004Q2 ��A���P Java ES 2005Q4 �W IM ���������ۮe���D (6309082)

�U�C���p��׳y���F�����D�G

�� server-4 �W��� imconfig ���ε{���t�m Instant Messaging �ɡA�t�m�����\�CAccess Manager 7 2005Q4 SDK �� server-4 �W�� Instant Messaging (IM) �ϥήɡA��P Java ES 2004Q2 �������ۮe�C

�ѨM��k

�z�פW�AAccess Manager ��A������3�P Access Manager SDK �������ۦP�C�p�ݧ�h��T�A�аѾ\�uSun Java Enterprise System 2005Q4 �ɯū�n�v�C

�¦��Ҧ��U�֤߻{�ҼҲդ��s�������ۮe���D (6305840)

Access Manager 7 2005Q4 �¦��Ҧ��� Access Manager 6 2005Q1 �}�l�A��֤߻{�ҼҲդ��s���U�C���ۮe���D�G

�ѨM��k

�L�C

�N�z�{���L�k�n�J�A�]���u�]�w�ɤ��b��´���v(6295074)

�b Access Manager �D���x���A��u�d��v�Ҧ��U�إߤ@�ӥN�z�{���C�Y�n�X��ϥΥN�z�{���W�٦A���n�J�AAccess Manager �|�Ǧ^��~�T���A�]���N�z�{������s��ӽd���v���C

�ѨM��k

�ק��v���H���\�N�z�{����Ū��/�g�J�s��C

Delegated Administrator commadmin ���ε{�����إߨϥΪ� (6294603)

Delegated Administrator commadmin���ε{�� (�� -S mail�Bcal �ﶵ) ���b�w�]��줺�إߨϥΪ̡C

�ѨM��k

�Y�N Access Manager �ɯŦܪ��� 7 2005Q4�A��N Delegated Administrator �ɯšA�N�|�o�ͦ����D�C�p�ݤɯ� Delegated Administrator �������T�A�аѾ\�uSun Java Enterprise System 2005Q4 �ɯū�n�v�C

�Y������ɯ� Delegated Administrator�A�п�`�U�C�B�J���G

  1. �b UserCalendarService.xml �ɮפ��A�N mail�Bicssubcribed �� icsfirstday �ݩʼХܬ���ܩʦӫD���ݡC�̹w�]�A���ɮצ�� <install-dir>\DelegatedAdmin\lib\services�C
  2. �b Access Manager ���A��� amadmin ��O�H�����{���� XML �ɮסA�p�U�ҥܡG
  3. amadmin.bat -u amadmin -w password -r UserCalendarService

  4. �b Access Manager ���A�[�J��s�᪺ XML �ɮסA�p�U�ҥܡG
  5. amadmin.bat -u amadmin -w password

    <install-dir>\DelegatedAdmin\lib\services\UserCalendarService.xml

  6. ���s�Ұ� Access Manager Web �e���C

Delegated Administrator commadmin ���ε{�����إ߲�´ (6292104)

Delegated Administrator commadmin���ε{�� (�� -S mail�Bcal �ﶵ) ���إ߲�´�C

�ѨM��k

�аѾ\�W�@�Ӱ��D���ѨM��k�C

�w�˰��D

�ϥήe���t�m�w�� SDK �ɡA�q�� URL �����T (6327845)

�ϥήe���t�m (DEPLOY_LEVEL=4) ��� SDK �w�ˮɡA�q�� URL �����T�C

�ѨM��k

  1. �b AMConfig.properties �ɮפ��]�w�U�C�S�ʡG
  2. com.iplanet.am.notification.url= protocol://fqdn:port/amserver/servlet/com.iplanet.services.comm.client. PLLNotificationServlet

  3. ���s�Ұ� Access Manager �H�Ϸs�ȥͮġC

Access Manager classpath �ѷӹL�j� JCE 1.2.1 �M�˼Ҳ� (6297949)

Access Manager classpath �ѷ� 2005 �~ 7 �� 27 ���j� Java Cryptography Extension (JCE) 1.2.1 �M�˼Ҳ� (ñ�p����)�C

�ѨM��k

�L�C��M�b classpath ���s�b�M�˼ҲհѷӡAAccess Manager �ä��|�ϥΦ��M�˼ҲաC

�D�W�ŨϥΪ̪��O���ɻP����ؿ��v�������T (6257161)

�b�L�T���w�˰t�m�ɤ���w�F�D�W�ŨϥΪ̮ɡA����B�O���ɤαҰʥؿ��v�������T�]�w�C

�ѨM��k

�ܧ�o�ǥؿ��v���H��D�W�ŨϥΪ̥i�H�s��C

�t�m���D

�ϥΫD�w�] URI �ɡA�����s�� Application Server 8.1 server.policy �ɮ� (6309759)

�Y�z�O�N Access Manager 7 2005Q4 ���p�b Application Server 8.1 �W�A�ù�A�ȡB�D���x�αK�X Web 3�ε{���ϥΫD�w�] URI�A��o��3�ε{���'O�㦳�w�]�� URI �� amserver�Bamconsole ��ampassword�A�h�xճz�L Web �s��s�� Access Manager ���e�A������s��3�ε{����A����쪺 server.policy �ɮסC

�ѨM��k

�H�p�U�覡�s�� server.policy �ɮסG

  1. ����w���p Access Manager �� Application Server ��ҡC
  2. �ܧ�� /config �ؿ�C�Ҧp�G
  3. <install-dir>ApplicationServer\domains\domain1\config

  4. �s�@ server.policy �ɮת��ƥ�ƥ��C�Ҧp�G
  5. cp server.policy server.policy.orig

  6. �b server.policy �ɮפ��A�M��U�C�����G
  1. �b�U�C��O�椤�A�H�A�� Web 3�ε{�����D�w�] URI ��N amserver�G
  1. �Y�O�b�¦��Ҧ��U�i��w�ˡA�Цb�U�C��O�椤�A�H�D���x Web 3�ε{�����D�w�] URI ��N amconsole�G
  1. �b�U�C��O�椤�A�H�K�X Web 3�ε{�����D�w�] URI ��N ampassword�G
  1. �Ұʳ��p Access Manager �� Application Server ��ҡC

���x��A���M��P FQDN �O�W�ݩʥ���s (6309259, 6308649)

�b�h����A�����p���A�Y�N Access Manager �w�˦b�ĤG�� (�H�Ϋ���) ��A���W�A���x��A���M��P FQDN �O�W�ݩʤ��|��s�C

�ѨM��k

��ʥ[�J�u�d��/DNS�v�O�W�P���x��A���M�涵�ءC�p�ݬ���B�J����T�A�аѾ\�uSun Java System Access Manager 7 2005Q4 Deployment Planning Guide�v�����uAdding Additional Instances to the Platform Server List and Realm/DNS Aliases�v�C

�������ҪA�Ȥ������ݩʬO�_����� (6308653)

Access Manager 7 2005Q4 �|�j��A�� XML �ɮפ��������ݩʥ������w�]�ȡC

�ѨM��k

�p�G�A�Ȫ������ݩʨS���ȡA�Ь��ݩʥ[�J�ȫ�A���s��J�A�ȡC

amconfig.bat �{���ɥ���s�d��/DNS �O�W�Υ��x��A���M�涵�� (6284161)

�b�h����A�����p���Aamconfig �{���ɥ���s��L Access Manager ��Ҫ��d��/DNS �O�W�Υ��x��A���M�涵�ءC

�ѨM��k

��ʥ[�J�u�d��/DNS�v�O�W�P���x��A���M�涵�ءC�p�ݬ���B�J����T�A�аѾ\�uSun Java System Access Manager 7 2005Q4 Deployment Planning Guide�v�����uAdding Additional Instances to the Platform Server List and Realm/DNS Aliases�v�C

�t�m���A�ɽd�������w�] Access Manager �Ҧ����d�� (6280844)

�̹w�]�A�|�ҥΰt�m���A�ɽd������ Access Manager �Ҧ� (AM_REALM �ܼ�)�C

�ѨM��k

�Y�n�b�u�¦��v�Ҧ��U�w�˩ΰt�m Access Manager�A�Э��]���A�ɤ����ܼơG

AM_REALM = disabled

Access Manager �D���x���D

�w�� SAML�A�󱱨�x���ƻs [�i�H��X�@�٦�] �|�o�Ϳ�~ (6326634)

�b Access Manager �D���x���A�� [�p�X] > [SAML] ���ҤU�إ� [SAML �i�H��X�@�٦�]�C�Y�z�xսƻs [�i�H��X�@�٦�]�A�N�|�o�Ϳ�~�C

�ѨM��k

�L�C

���ݰO��� amConsole.access �P amPasswordReset.access �L�k�ϥ� (6311786)

�t�m���ݰO��ɡA�Ҧ����O��|�g�J���� Access Manager ��ҡA��O�b amConsole.access �P amPasswordReset.access �����|�g�J�K�X���]��T�C���|�g�J�ӰO���ɡC

�ѨM��k

�L�C

�b�D���x�[�J��h amadmin �S�ʱN�ܧ� amadmin �ϥΪ̱K�X (6309830)

�b�޲z�D���x���[�J�νs�� amadmin �ϥΪ̪����/S�ʡA�ɭP amadmin �ϥΪ̱K�X�o�ͧ��ܡC

�ѨM��k

�L�C

�s�� Access Manager �D���x�L�k�]�w CoS �d���u���v (6309262)

�s�� Access Manager 7 2005Q4 �D���x�L�k�]�w�u�A�����O (CoS)�v�d���u���v�C

�ѨM��k

�n�J Access Manager 6 2005Q1 �D���x�H�]�w�έק� CoS �d���u���v�C

�N�s�հ��������޲z�ϥΪ̥[�J�ϥΪ̮ɵo�Ͳ��`��~ (6299543)

��z�N�s�հ��������޲z�ϥΪ̥[�J�ϥΪ̮ɡAAccess Manager �D���x�|�Ǧ^���`��~�C

�ѨM��k

�L�C

�b�¦��Ҧ��U�A�L�k�q����R���Ҧ��ϥΪ� (6293758)

�b�¦��Ҧ��U�A�Y�xձq����R���Ҧ��ϥΪ̡A�N�|�d�U�@��ϥΪ̡C

�ѨM��k

�A���xձq����R���ӨϥΪ̡C

�L�k�[�J�B�R���έקﱴ�jA�ȸ귽���� (6273148)

Access Manager �޲z�D���x�����\�z�[�J�B�R���έק�ϥΪ̡B����νd�򪺸귽���ѡC

�ѨM��k

�L�C

�ϥο�~�� LDAP �s���K�X�ɡA3�Ǧ^�D���j�M��~�T�� (6241241)

�ϥο�~�� LDAP �s���K�X�ɡAAccess Manager �޲z�D���x���|�Ǧ^��~�T���C

�ѨM��k

�L�C

�b�¦��Ҧ��U�AAccess Manager �L�k�b�e���U�إ߲�´ (6290720)

�Y�z�إ߮e���A�M��xզb�Ӯe���U�إ߲�´�AAccess Manager �|�Ǧ^�u�ߤ@�ʹH�W��~�v�T���C

�ѨM��k

�L�C

�[�J Portal Server ����A�ȮɥX�{�ª��D���x (6293299)

Portal Server �P Access Manager �w�˩�P�@��A���W�C�b�u�¦��v�Ҧ��U�w�� Access Manager ��A�ϥ�/amserver �n�J�s�� Access Manager �D���x�C�b�z��ܲ{���ϥΪ̫�xե[�J�A�� (�p NetFile �� Netlet) �ɡA�|��M�X�{�ª� Access Manager �D���x (/amconsle)�C

�ѨM��k

�L�C�ثe������ Portal Server �����f�t Access Manager 6 2005Q1 �D���x�ϥΡC

�F��귽�����A�D���x���Ǧ^ Directory Server �]�w�����G (6239724)

�ϥβ{���� DIT �ﶵ�w�� Directory Server�A�M��w�� Access Manager�C�n�J AccessManager �D���x�ëإ߸s�աC�s��s�դ����ϥΪ̡C�Ҧp�A�ϥοz�ᄍ uid=*999* �[�J�ϥΪ̡C���ͪ��M����O�Ū��A��D���x����ܥ���~�B��T��ĵ�i�T���C

�ѨM��k

�s�զ���o�j�� Directory Server �j�M�j�p����C�p�G�s�զ���j��j�M�j�p����A�оڦ��ܧ�j�M�j�p����C

SDK �P�Τ�ݰ��D

�L�k�����l�d�򪺶��q�@�~�A�Ȱt�m (6318296)

�إ߳��h�d�򪺤l�d��A�ù��[�J���q�@�~�A�ȫ�A����xղ������q�@�~�A�Ȱt�m�ɷ|���Ϳ�~�T���C

�ѨM��k

�����w�]�����h ID �x�s�w AMSDK1�A�M��N���x�s�w�[�^�t�m���C

��w�������ɡACDC servlet ���s�ɦV�ܵL�Ī��n�J���� (6311985)

�N Apache agent 2.2 �]�� CDSSO �Ҧ��U�A��s��N�z�{���O�@���귽�ɡACDC servlet ���s�ɦV�ϥΪ̦ܰΦW�{�ҭ����A�Ӥ��O�w�]���n�J�����C

�ѨM��k

�L�C

��A�����s�Ұʫ�A�Τ�ݨS������q�� (6309161)

�ϥΥΤ�� SDK (amclientsdk.jar) ���g��3�ε{���b��A���n���s�ҰʮɡA�S������q���C

�ѨM��k

�L�C

�ѧO�x�s�w ldapv3 �~���{���P openldap �������׸ɵ{�� (6305268)

openldap ���䴩����ʷj�M�A�S������ʷj�M�s���A�~���{���N�L�k�ҰʡC

�ѨM��k

�Y�n�ϥ� ldapv3 �~���{���A�ЦV Sun Microsystems �޳N�䴩�N��h� Access Manager �׸ɵ{���C

�A�ȼҦ��ܧ��ASDK �Τ�ݥ������s�Ұ� (6292616)

�Y�ק�F���A�ȼҦ��AServiceSchema.getGlobalSchema �|�Ǧ^�ª��Ҧ��ӫD�s���Ҧ��C

�ѨM��k

�A�ȼҦ��ܧ�᭫�s�ҰʥΤ�ݡC

��O�椽�ε{�����D

�L�k�b Internet Explorer 6.0 ���x�s�㦳�h�X�r���� XML ��� (4995100)

�Y�b XML �ɮפ��[�J�S��r�� (�Ҧp�b�u&�v����[�W�r��uamp;�v)�A�ɮ׷|���T�x�s�A��O�Y�y��ϥ� Internet Explorer 6.0 �^��� XML �]�w�ɡA�ɮ׵L�k���T��ܡC�p�G���۹xզA���x�s�ӳ]�w�ɡA�t�η|�Ǧ^��~�T���C

�ѨM��k

�L�C

�{�Ұ��D

UrlAccessAgent SSO �O����� (6327691)

UrlAccessAgent SSO �O����aA�]��3�ε{���Ҳե��Ǧ^�S��ϥΪ� DN�A�ɭP�S��ϥΪ� DN �۲ŦӨϱo�|����j��O����aC

�ѨM��k

�L�C

�󥿱K�X��A�L�k�n�J�� LDAPV3 �~���{��/�ʺA�]�w�ɪ��l�d�� (6309097)

�b�d��Ҧ��U�A�p�G�ϥΡu��~�v�K�X�b�d�򤤫إ� ldapv3 ����x�s�ϡA�õy��N�K�X�ܧ� amadmin�A�h��z�xեH�ϥ��ܧ��K�X���ϥΪ̨���A���n�J�ɡA�n�J�|���ѡA��ܤ��s�b�]�w�ɪ��T���C

�ѨM��k

�L�C

�¦� (�ۮe) �Ҧ��U Access Manager �έp�A�Ȫ��w�]�t�m���ۮe (6286628)

�b�¦��Ҧ��U�w�� Access Manager ��A�u�έp�A�ȡv���w�]�t�m�w�ܧ�G

�ѨM��k

�L�C

���h��´���R�W�ݩʪ��ݩʰߤ@�ʾD�}�a (6204537)

�w�� Access Manager ����A�H amadmin ����n�J�A�ñN o�BsunPreferredDomain�BassociatedDomain�BsunOrganizationAlias�Buid �� mail �ݩʥ[�J [�ߤ@���ݩʲM��]�C�Y�n�إߨ�ӦW�٬ۦP���s��´�A�@�~�|���ѡA�� Access Manager �|��� [��´�w�s�b] �T���A�Ӥ��O��w����� [�H���ݩʰߤ@��] �T���C

�ѨM��k

�L�C���������T���T���CAccess Manager �B�@���`�C

���q�@�~�P SSO ���D

��ɰϪ� Access Manager ��ҨϨ�L�ϥΪ̶��q�@�~�O�� (6323639)

�󤣦P�ɰϦw�˪� Access Manager ��Ҧb�P�@�ӫH��餺�ɭP�ϥΪ̶��q�@�~�O�ɡC

�t��ž��� SSL �פ�ɡA�t�η|�إߵL�Ī��A�ȥD��W�� (6245660)

�p�G���p Access Manager �� Web �e���� Web Server�A��t��ž��פ�F SSL�A�h�Τ�ݱN���|�Q�ɦV�ܥ��T�� Web Server �����C��@�U Access Manager �D���x���� [���q�@�~] ���ҷ|�Ǧ^��~�T���A�]���D��L�ġC

�ѨM��k

�b�U�C�d�Ҥ��AWeb Server �|�ϥγs���� 3030 ��ť�C�t��ž��h�ϥγs���� 80 ��ť�A�ñN�ШD���s�ɦV�� Web Server�C

�b web-server-instance-name/config/server.xml �ɮפ��A��z�ϥΪ� Web Server �����өw�A�s�� servername �ݩʥH��V�t��ž��C

�w�� Web Server 6.1 Service Pack (SP) �����A�H�p�U�覡�s�� servername �ݩʡG

Web Server 6.1 SP2 (�Χ�s����) �i�N�q�T��w�q http �t��� https�A�αq https �t��� http�C�]���A�ХH�p�U�覡�s�� servername�G

�������D

�R�������t�m�A�Ȥ����ʺA�ݩʷ|�ɭP�����s��o�Ͱ��D (6299074)

�R�� [�����t�m�A��] �����ʺA�ݩʷ|�ɭP�s��H�U��ת������ɵo�Ͱ��D�G

  1. �b [�����t�m�A��] ���إߨ�ӰʺA�ݩʡC
  2. �إߵ����æb�^3���Ѫ̤����ʺA�ݩ� (�ӦۨB�J 1)�C
  3. ���� [�����t�m�A��] �����ʺA�ݩʡA�M��A�إߨ���ݩʡC
  4. �յ۽s���B�J 2 �إߪ������C

���G���G�u��~�]�w�F�L�Ī��ʺA�S�ʡv�C�̹w�]�A�M�椤���|��ܥ�󵦲��C�����j�M��A�����|��ܥX�ӡA��z�L�k�s��ΧR���{�������A�Ϋإ߷s�����C

�ѨM��k

�q [�����t�m�A��] �����ʺA�ݩʤ��e�A�Х�q����������o���ݩʪ��ѷӡC

��A���Ұʰ��D

Access Manager �Ұʮɵo�Ͱ����~ (6309274, 6308646)

Access Manager 7 2005Q4 �ҰʮɶǦ^ amDelegation �P amProfile �����ɮפ��������~�G

�ѨM��k

�L�C�z�i�����o�ǰT���C

�p�X�P SAML ���D

�ϥΤu��]�w�ɮ��p�X���� (6324056)

�Y�]�w�F�ѧO���Ѫ� (IDP) �P�A�ȴ��Ѫ� (SP)�A�N�q�T��w�ܧ󬰨ϥ��s��u��]�w�ɡA�M��յۦb IDP �P SP �����p�X�ϥΪ̡A���G�p�X���ѡC

�ѨM��k

�L�C

3�N SAML �ԭz�����S��r�� (&) �i��s�X (6321128)

�H Access Manager �����ӷ����I�P�ت��a���I�A�åB�t�m�F SSO�A���G�ت��a���I���o�Ϳ�~�A��]�O SAML �ԭz�����S��r�� (&) ���s�X�A�]���y����w����R���ѡC

�ѨM��k

�L�C

�xձN Disco �A�ȥ[�J����ɵo�Ͳ��`���p (6313437)

�b Access Manager �D���x���A�Y�յ۱N�귽���ѥ[�J Disco �A�ȡA�|�o�ͥ��������`���p�C

�ѨM��k

�L�C

���D�z��t�m���x�s��L�ݩʡA�_�h�L�k�t�m Auth Context �ݩ� (6301338)

���D�z�w�t�m���x�s��L�ݩʡA�_�h�N�L�k�t�m Auth Context �ݩʡC

�ѨM��k

��t�m���x�s���Ѫ̳]�w�ɡA�A�t�m Auth Context �ݩʡC

�Y�ڦr�%]�t�u&�v�r���A�N�L�k�[�J EP �d�� (6300163)

�Y Directory Server ���@�Ӯڦr�%]�t�u&�v�r���A�ӱz�յۥ[�J [����t�m�ɪA�ȸ귽����]�A�N�|��X�@�Ӳ��`���p�C

�ѨM��k

�L�C

�p�X�L�{���o�͵n�X��~ (6291744)

�b�d��Ҧ��U�A�Y�z�p�X�ѧO���Ѫ� (IDP) �P�A�ȴ��Ѫ� (SP) �W���ϥΪ̱b���A�M��b�פ��p�X��n�X�A�|�o�ͥH�U��~�G[��~�G�䤣��l��´]�C

�ѨM��k

�L�C

���y�� (g11n) ���D

�ϥΪ̻y����ҳߦn�]�w���M�Φܾ�Ӻ޲z�D���x (6326734)

���� Access Manager �޲z�D���x�����󤣷|��u�ϥΪ̻y����ҳߦn�]�w�A�ӷ|�ϥ��s��y����ҳ]�w�C�����D�|�v�T [����]�B[�n�X] �� [�u�W����] ��s�A�H�� [����] �M�u�W�����e�C

�ѨM��k

�N�s��]�w�ܧ󬰻P�ϥΪ̳ߦn�]�w�ۦP���y����ҡC

�b�u�Τ�ݰ���v���L�k���� UTF-8 (5028779)

�u�Τ�ݰ���v�\��L�k���`�B�@�C�b Access Manager 7 2005Q4 �D���x���Ұ����ܧ󥼦۰ʶǻ����s��C

�ѨM��k

���G�ظѨM��k�G

�O���ɤ��h�줸�զr���H�ݸ���� (5014120)

<install-dir>\AccessManager\logs �ؿ�U���O���ɤ����h�줸�հT���H�ݸ� (?) ��ܡC�O���ɬ���ͽs�X�B���@�w�O UTF-8 �榡�C�b�S�w�y����ұҰ� Web �e����ҮɡA�ӻy����Ҫ��O���ɱN�ϥέ�ͽs�X�榡�C�Y�t��ܨ�L�y����Ҩí��s�Ұ� Web �e����ҡA���򪺰T���N�H�ӻy����Ҫ���ͽs�X�e�{�A��ϥΥ�e�s�X�覡���T���N�H�ݸ���ܡC

�ѨM��k

�T�w�C�����ϥΦP�@�ح�ͽs�X�Ұʥ�� Web �e����ҡC

���)|�����a�ƪ� Access Manager �n�J�����b Windows 2000 ����ܬ���Z��� (6358371)

Access Manager �n�J�������)|�����a�ƪ����e�b Windows 2000 ����ܬ���Z���C

�ѨM��k

�ϥ� mozilla firefox �s��C

�����D

��A���ݪ� com.iplanet.am.session.client.polling.enable ���o�� true (6320475)

AMConfig.properties �ɮפ��� com.iplanet.am.session.client.polling.enable �S�ʦb��A���ݥû����i�H�]�w�� true�C

�ѨM��k

�̹w�]�A���S�ʳ]�� false�A3�û����o���]�� true�C

�D���x�u�W�����w�]���\ URL �����T (6296751)

service.scserviceprofile.iplanetamauthservice.html �u�W�����ɮפ����w�]���\ URL �����T�C[�w�]���\ URL] ��챵��h���ȲM��A���M���w�{�Ҧ��\��A�|�N�ϥΪ̭��s�ɦV�ܪ� URL�C���ݩʮ榡�� clientType|URL�A�z�ȯ��w URL ���ȡA�w�]�� HTML �����C

"/amconsole" �w�]�Ȥ����T�C

�ѨM��k

���T���w�]�Ȭ� "/amserver/console"�C


�i�A�5o���ɮ�

Sun Java System Access Manager �èS���]�t���z�i�H�A�5o�������v�����~�ϥΪ̪��ɮסC


�p���i���D�M���ѫ�ij

�p�G�z�J�즳�� Sun Java System Access Manager �����D�A�ШϥΥH�U���@�P Sun �Ȥ�䴩�H��s���G

���K��ڭ̳̦��Ħa��U�z�ѨM���D�A�Цb�s���䴩�H��ɷdzƦn�H�U��T�G

Sun �w��z���X�_�Q�N��

Sun �P�O��ﵽ���~����w��z�����P��СC�ϥ� Web �����N�N�����ѵ� Sun�G

http://www.sun.com/hwdocs/feedback/

�Цb�A�?��줤���ѧ��㪺�����D�H�Τ�󸹽X�C��󸹽X�i�H�b��󪺼��D���Τ�󳻳����A�q�`�O�@�ӤC��ΤE��ƪ��Ʀr�C�Ҧp�A��������󪺤�󸹽X�O 819-5804�A������D���u�A�Ω� Microsoft Windows �� Sun Java System Access Manager 7 2005Q4 ��������v�C���X�N���ɱz�ٻݭn�b��椤��J����󪺭^����D�M��󸹽X�C�Ҧp�A����󪺭^���󸹽X�� 819-4262-10�A������D���uSun Java System Access Manager 7 2005Q4 Release Notes for Microsoft Windows�v�C


��L Sun �귽

�z�i�b�H�U��ں���m��즳�Ϊ� Sun Java System ��T�G


Copyright © 2006 Sun Microsystems, Inc. ���v�Ҧ��C

Sun Microsystems, Inc. ��󥻤��ҭz�޳N�֦����z�]���v�C�ݯS�O��X���O (��ȭ���)�A�o�Ǵ��z���v�i��]�A�@���Φh���b http://www.sun.com/patents �W�C�X�����M�Q�A�H�Τ@���Φh�����M��L��a/�a�Ϫ���L�M�Q�Ϋݧ�M�Q�C

SUN �M���v/��K�C

���F���v�Q - �ӷ~�n��C�F���ϥΪ̧�3��u Sun Microsystems, Inc. ���зDZ��v�X��M FAR �Ψ�W�ɤ�󤤪��A�α�ڡC

�ϥΥ����~������u���v�W�w�C

���o�檫�i��]�t�Ѩ�O�t�Ӷ}�o����ơC

���~���Y�dz��%i�෽�� Berkeley BSD �t�ΡA�øg�[�{�j�DZ��v�C

Sun�BSun Microsystems�BSun �лx�BJava �M Solaris �O Sun Microsystems, Inc. �b���M��L��a/�a�Ϫ��ӼЩε�U�ӼСC�Ҧ� SPARC �Ӽг��O SPARC International, Inc. �b���Ψ�L��a/�a�Ϫ��ӼЩε�U�ӼСA�g���v��ϥΡC