Deployment Example: Single Sign-On, Load Balancing and Failover Using Sun OpenSSO Enterprise 8.0

ProcedureTo Create a Test Policy in the OpenSSO Enterprise Root Realm

  1. Access https://osso-1.example.com:1081/opensso/console from a web browser.

  2. Log in to the OpenSSO Enterprise console as the administrator.

    Username

    amadmin

    Password

    ossoadmin

  3. Under the Access Control tab, click / (Top Level Realm).

  4. Click the Policies tab.

    The Policies page is displayed.

  5. Click New Policy.

  6. Enter URL Policy for Application Server-2 in the Name field.

  7. Under Rules, click New.

  8. On the resulting page, select URL Policy Agent (with Resource Name) and click Next.

  9. On the resulting page, provide the following information and click Finish.

    Name:

    agentsample

    Resource Name:

    http://pr-2.example.com:1081/agentsample/*


    Note –

    Make sure the hostname is typed in lowercase.


    GET

    Mark this check box and verify that Allow is selected.

    POST

    Mark this check box and verify that Allow is selected.

    The rule agentsample is now added to the list of Rules.

  10. Under Subjects, click New.

  11. On the resulting page, select Access Manager Identity Subject and click Next.

  12. On the resulting page, provide the following information and click Search.

    Name:

    agentsampleGroup

    Filter:

    Select Group.

    Manager-Group and Employee-Group are displayed in the Available list.

  13. Select Manager-Group and Employee-Group and click Add.

    Manager-Group and Employee-Group are displayed in the Selected list.

  14. Click Finish.

  15. Click OK.

    The new policy is displayed in the list of policies.

  16. Click Back to Access Control.

  17. Log out of the OpenSSO Enterprise console.