Skip Headers
Oracle® Communications Converged Application Server Security Guide
Release 5.1

Part Number E35553-01
Go to Documentation Home
Home
Go to Book List
Book List
Go to Table of Contents
Contents
Go to Feedback page
Contact Us

Go to previous page
Previous
Go to next page
Next
PDF · Mobi · ePub

1 Converged Application Server Security Overview

This chapter describes the Oracle Communications Converged Application Server security features:

Basic Security Considerations

The following principles are fundamental to using any application securely:

Overview of Converged Application Server Security

Converged Application Server relies on the underlying security features of the Oracle WebLogic platform. As such, Converged Application Server benefits from the security features of the underlying WebLogic platform, including security realms, security monitoring features, and more.

See "Oracle Security Documentation" for information about securing the WebLogic platform.

Additional security features applicable to Converged Application Server include:

This document describes the security features specific for Converged Application Server. For WebLogic information, including information about performing a secure installation and implementing application security, see the Oracle WebLogic Server 11g documentation.

Understanding the Converged Application Server Environment

When planning your Converged Application Server implementation, consider the following:

Oracle Security Documentation

To implement security, you configure Converged Application Server security features as well as those in the products on which it relies.

See the following documents for more information:

Common Security Configuration Tasks

Table 1-1 lists Converged Application Server configuration tasks and provides links to additional information.

Table 1-1 Security Configuration Tasks

Task Document Reference

Understanding the Digest identity assertion providers

Configuring LDAP Digest authentication

Configuring Digest authentication with an RDBMS

See "Configuring Digest Authentication".

Understanding client-cert authentication solutions

Delivering X509 certificates over 2-way SSL

Developing a Perimeter authentication solution

Using the Converged Application Server WL_Client_Cert header to deliver X509 certificates

See "Configuring Client-Cert Authentication".

Understand forwarding rules for SIP messages having the P-Asserted-Identity header

Configuring P-Asserted-Identity providers

See "Overview of SIP Servlet Identity Assertion Mechanisms".

Defining security constraints for a SIP Servlet

Mapping SIP Servlet roles to Converged Application Server roles and principals

Debugging SIP Servlet security constraints

See "Securing SIP Servlet Resources" in Converged Application Server Developer's Guide

Configuring trusted hosts

See information on the sip-security setting in sipserver.xml, as described in Oracle Communications Converged Application Server Administrator's Guide