Part III describes how to configure your web service for message protection, SSL, authentication, and authorization. You can also integrate various hardware modules with Oracle Web Services Manager.
Part III contains the following chapters:
Chapter 7, "Configuring Message Protection," describes how to work with keystores and credential stores. It also describes how to use identity extensions and how to cache the nonce using Oracle Coherence.
Chapter 8, "Protecting Personally Identifiable Information," describes how to protect Personally Identifiable Information (PII) using the PII security policy.
Chapter 9, "Configuring Transport-Level Security (SSL)," describes how to work with transport-level security in the form of SSL. It describes how to configure one-way and two-way SSL for WebLogic Server and for web service clients. It also describes how to configure SSL for Oracle HTTP Server.
Chapter 10, "Configuring Authentication," describes how to configure authentication in OWSM, including authentication providers, digest authentication, SAML, Kerberos, ActiveDirectory, WS-Trust, and identity extensions.
Chapter 11, "Configuring Authorization," describes how to configure authorization in OWSM, such as determining which resources to protect, and setting authorization permissions and an OPSS resource name. It also describes how to configure fine-grained authorization using OES.
Chapter 12, "Configuring Secure Conversation," describes how to configure WS-SecureConversation.
Chapter 13, "Integrating Hardware with Oracle Web Services Manager," describes how to integrate Web Services Manager with various hardware security modules and for Oracle SPARC T4 and SPARC T5 cryptographic acceleration.