Tivoli SecureWay Policy Directorpublib.boulder.ibm.com/tividd/td/SW_30/GC32-0737-00/zh... ·...

140
Tivoli ® SecureWay Policy Director Web Portal Manager zΓU 3.8

Transcript of Tivoli SecureWay Policy Directorpublib.boulder.ibm.com/tividd/td/SW_30/GC32-0737-00/zh... ·...

Tivoli® SecureWay PolicyDirectorWeb Portal Manager zΓU

3.8

Tivoli® SecureWay PolicyDirectorWeb Portal Manager zΓU

3.8

Tivoli Policy Director® Web Portal Manager® zΓU

@vn

© Copyright IBM Corporation 2001. All rights reserved. uαuTivoli Systems nΘvXvBuIBM nΘvXvuIBM ßvXvuTivoli úl[XvCX⌠≤í≈bo IBMq\ivºeAúúoH⌠≤í⌠≤ΦkBqlíB≈±íBCΘBBBΓÑsBα½BgBxsbtWα½⌠≤qúyÑCIBM qP Qß¡\ivis@≈i\¬σ≤wΣL QßvABbñAC@≈ú]t IBM q@vnCbo IBM q\iveAúPß⌠≤ΣL@vv¡Cσ≤ú@úºBuHu¼vúAúú⌠≤íOdCbúßσ≤ñOA]Aw∩SwiΓPAC

U.S. Government Users Restricted Rights—Use, duplication or disclosure restricted by GSA ADP Schedule Contractwith IBM Corporation.

I B MB I B M xB T i v o l iB T i v o l i xBA I XBC r o s s - S i t eBN e t V i e wBO S / 2B P l a n e tTivoliBRS/6000BSecureWayBTivoli CertifiedBTivoli EnterpriseBTivoli Enterprise ConsoleBTivoli ReadyBTMEH WebSphere úO IBM q Tivoli Systems Inc. bⁿΩM]ΣLΩaUC

Java H Java ≥ªMxúO Sun Microsystems, Inc. bⁿΩMΣLΩaUC

Lotus O Lotus Development Corporation UC

MicrosoftBWindowsBWindows NT P Windows xO Microsoft Corporation bⁿΩM]ΣLΩañC

UNIX O The Open Group bⁿΩΣLΩaUC

ΣLqBúMAWiαOΣLqAOC

N

bXñú Tivoli Systems IBM úBíAúϕªb Tivoli Systems IBM τΩañúúCbúoúBíAúϕuα Tivoli Systems IBM úBíACunúH Tivoli System IBM ÷z]úΣLⁿkO@v¡A⌠≤\αÑúBíAúiNbúúBíAC ²PΣLús@⌠PτAúD TivoliSystems IBM SOⁿwAúMΣd⌠≤Cbσ≤ñiα]t Tivoli Systems IBM ºMQMQCúezMQº⌠≤vC÷vΦdAHHτH IBMDirector of Licensing, IBM Corporation, North Castle Drive, Armonk, New York 10504-1785, U.S.A.

© Copyright International Business Machines Corporation 2001. All rightsreserved.

²

eÑ. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . viiΓUA∩H . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . vii

ΓUe . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . viii

X. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . viii

Tivoli SecureWay Policy Director w . . . . . . . . . . . . . . . . . . . . . . viii

uWsX . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . x

qX . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . x

ú∩≤XNú . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . x

pßΣñ . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . xi

D . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . xi

rΘD . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . xi

°@twM⌠ . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . xii

1 Web Portal Manager . . . . . . . . . . . . . . . . . . . . . . . . . 1tmMN . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 2

2 w Web Portal Manager . . . . . . . . . . . . . . . . . . . . . . . . . 5nwΘD . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 5

wW . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 6

nΘ . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 6

÷w . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 7

wtm Tivoli SecureWay Policy Director Runtime Environment MManagement Server . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 13

wtm IBM WebSphere Application Server 3.5 . . . . . 13

WebSphere M LDAP ≡ . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 13

σ¼wMqw . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 13

wnD . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 14

wBJ . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 14

iiiTivoli SecureWay Policy Director Web Portal Manager zΓU

wtm IBM WebSphere Application Server Fixpack 4. . . . . . . . . . . 17

wtm Web Portal Manager . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 19

ú Web Portal Manager . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 21

° . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 21

3 Web Portal Manager z . . . . . . . . . . . . . . . . . . . . . . . . 23º[ . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 23

nJnX Web Portal Manager . . . . . . . . . . . . . . . . . . . . . . . . . . . 26

@ . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 27

→ jM . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 28

e . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 29

e → GSO . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 33

e → GSO → GSO GSO s . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 33

→ . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 35

s@ . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 36

s → jM. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 36

se . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 38

s → . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 41

ⁿO@½≤í@ . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 43

½≤í → s² . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 43

ⁿO@½≤e . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 44

ⁿO@½≤e → . . . . . . . . . . . . . . . . . . . . . . . . . 45

ⁿO@½≤e → → . . . . . . . . . . . 46

sεMµ@ . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 47

ACL → CX. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 48

ACL e . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 48

ACL e → ACL e . . . . . . . . . . . . . . . . . . . . . . . . . . . 50

ACL e → ACL . . . . . . . . . . . . . . . . . . . . . . . . . . 51

iv 3.8

ACL e → s ACL . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 53

ACL e → ACL jMG . . . . . . . . . . . . . . . . . . . . . . . . . . . 53

ACL e → [ ACL . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 54

ACL e → . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 55

ACL e → → . . . . . . . . . . . . . . . . . . 56

ACL → . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 57

ACL → \iví . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 58

ⁿO@½≤h@ . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 59

POP→ CX . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 60

POP e . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 60

POP e → [ POP . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 62

POP e → POP jMG . . . . . . . . . . . . . . . . . . . . . . . . . . . 63

POP e → . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 64

POP e → → . . . . . . . . . . . . . . . . . . 65

POP → . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 66

GSO Ω@ . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 68

GSO Ω → CX GSO . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 68

GSO Ωe . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 69

GSO Ω → GSO . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 70

GSO Ω → CX GSO s . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 71

GSO Ωse . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 72

GSO Ω→ GSO s . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 74

4 e⌠z . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 77e⌠z . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 77

e⌠ñΓz. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 80

e⌠z@. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 82

e⌠z → ⌠Mµ . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 83

e⌠z → CX°⌠. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 84

vTivoli SecureWay Policy Director Web Portal Manager zΓU

e⌠⌠e. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 85

e⌠⌠e → CX . . . . . . . . . . . . . . . . . . . . . . . . . . . 90

e⌠⌠e → CX → e⌠e . . . . . . . . . . . 91

e⌠⌠e → CX → e⌠e → ñΓⁿw 93

e⌠⌠e → ⌠e . . . . . . . . . . . . . . . . . . . . . . . . . 95

e⌠⌠e → CXl⌠ . . . . . . . . . . . . . . . . . . . . . . . . . . . 96

e⌠⌠e → l⌠ . . . . . . . . . . . . . . . . . . . . . . . . . . . 96

e⌠⌠e → ñΓⁿw. . . . . . . . . . . . . . . . . . . . . . . . . . . . . 97

e⌠⌠e → ñΓⁿw → ⁿwñΓ⌠ . . . . . . . . . . . . . 99

e⌠⌠e → ñΓⁿw → ⁿwΩtYñΓ. . . . . . . 100

e⌠⌠e → ⌠z . . . . . . . . . . . . . . . . . . . . . . . . . . 101

e⌠⌠e → Ωz . . . . . . . . . . . . . . . . . . . . . . . . . . 102

e⌠⌠e → z . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 103

e⌠⌠e → Σz . . . . . . . . . . . . . . . . . . . . . . . . . . 104

e⌠z → °⌠. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 105

e⌠z → ñΓ . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 106

e⌠z → CXñΓ . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 108

ñΓe . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 108

ñΓe → ⌠ñΓ . . . . . . . . . . . . . . . . . . . . . . . . . . 109

ñΓe → MP⌠ñΓ . . . . . . . . . . . . . . . . . . . . . . . . . . 110

e⌠⌠ → ⌠jM . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 111

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 113

vi 3.8

Tivoli® Policy Director O⌡µ Tivoli Policy Director úXñí≥nΘCbvMzΦATivoli PolicyDirector íiúsxMΦATivoli Policy Director hiNoíπXCoúHπXíMΦ¼A

ΓXAªúsεzMΦiñzql

í⌠⌠MíwhCWeb Portal Manager O@suπA½WwgiHRoCiq pdadmin ⁿOµ⌡µ Tivoli Policy Director z@Aúio Web ¼í (GUI) ⌡µABßα⌡µz@±ehCWeb Portal Manager iN Tivoli Policy Director ²eHzDxC

Tivoli® SecureWay Policy Director Web Portal Manager zΓUp≤wBtmQ Tivoli® Policy Director Web PortalManagerC

ΓUA∩HΓUA∩HtdwBtmz Tivoli Policy DirectorWeb Portal Manager tzC

¬⌠xHUUG

¶ PC M UNIX® @t

¶ ΩwtmMº

¶ wz

¶ ⌠⌠⌠qH≤wA]A HTTPBTCP/IPBαeqH≤w(FTP)Btelnet

¶ u²sqH≤wv(LDAP) M²A

¶ OMv

viiTivoli SecureWay Policy Director Web Portal Manager zΓU

pGzΓuw Socket hv (SSL) qHAz⌠x SSLqH≤wB≈µ½]MMBBKXtΓkH

ñC

ΓUeΓU]tHUUG

¶ 1yWeb Portal Manager z

w∩ Web Portal Manager BtmNú@º[

¶ 5yw Web Portal Managerz

íp≤wtm Web Portal ManagerA]AªnΘCA÷≤p≤qtñú Web Portal ManagerBwH°ÑDDA]@ⁿC

¶ 23yWeb Portal Manager zz

w∩ Web Portal Manager MB@Φíú@º[CíuvBusvBuⁿO@½≤ívB

usεMµv(ACL)BuⁿO@½≤hv(POP) HusnJ (GSO) ΩvÑ\αϕ÷\αeMz@C

¶ 77ye⌠zz

w∩ Web Portal Manager e⌠z\α⌠tºMΦkú@º[Cíue⌠zv\αϕ÷\α

eMz@C

XC Tivoli Policy Director wñXHΣL÷σ≤CP]íp≤uWs Tivoli XBp≤q TivoliXAHp≤ú∩ Tivoli XNúC

Tivoli SecureWay Policy Director wqz¡xM Tivoli SecureWay Policy Director Base CD /doc²HuTivoli ßΣñv⌠úioUCuWσ≤C

viii 3.8

ReadMe First dOúM≤H@≈wσ≤Cp TivoliSecureWay Policy Director ÷ΩT÷DD]]A LDAP M≈≥ª]ΣLA\HU⌠G

http://www.ibm.com/redbooks

¶ Tivoli® Policy Director Read Me First, GI11-0807-02

C Tivoli SecureWay Policy Director M≤eAúíσ≤ⁿAíwJMúΦkC

¶ Tivoli® SecureWay Policy Director Base zΓUAGC40-0631-01

í Tivoli SecureWay Policy Director AkºMCúⁿAíp≤q pdadmin ⁿOµ⌡µ@C

¶ Tivoli® SecureWay Policy Director Base wΓUAGC40-0681-01

í¡xº Tivoli SecureWay Policy Director A]]AnΘw@ºMC

HURíσ≤uαquTivoli ßΣñv⌠oCp⌠sΦí÷ΩTA\xyuWsXzC

¶ Tivoli Policy Director Tº

C Tivoli Policy Director iαoTºC÷@UTºAKiπiα]MMΦC

¶ Tivoli Policy Director Base Administration API Developer’sReference

ú÷ΩTAíp≤z API íHíΦí⌡µ Tivoli Policy Director z@Cσ≤í Java® M

C p≤Ω@z APIC

¶ Tivoli Policy Director Base Authorization ADK Developer’sReference

ixTivoli SecureWay Policy Director Web Portal Manager zΓU

ú÷ΩTAíp≤ouπM Authorization API ²í Tivoli Policy Director w\αCσ≤íJava M C p≤Ω@ Authorization APIC

uWsXziHq Tivoli ßΣñ⌠s\h Tivoli XG

http://www.tivoli.com/support/documents/

oX]t PDF HTML µí]ΓúCtAí≈úúLσ≤C

jí≈σ≤ún ID MKXαsCnAqHU⌠o ID MKXG

http://www.tivoli.com/support/getting/

qXziHbHU⌠q\h Tivoli XG

http://www.ibm.com/shop/publications/order

]iHqUCΣñ@XqG

¶ ⁿΩaG800-879-2755

¶ [jG800-426-4968

¶ ΣLΩaG÷qXMµA\UC⌠G

http://www.tivoli.com/inside/store/lit_order.html

ú∩≤XNúNαÑz∩≤ Tivoli úíσ≤oAP]w∩zúXUA@∩iCpGzQ∩

úíσ≤úNúAQUCΣñ@Φk

pG

¶ qll≤e [email protected]

x 3.8

¶ bUC⌠±gßNúdG

http://www.tivoli.com/support/survey/

pßΣñpGz∩≤⌠≤ Tivoli ú DAiHpuTivoli ßΣñvC\UC⌠ Tivoli ßΣñΓUG

http://www.tivoli.com/support/handbook/

oΓUú÷≤p≤puTivoli ßΣñvΩT]° DY½wAHUCΩTG

¶ nOPΩµ

¶ qXMqll≤F°zbΩaw

¶ pΣºeΩT

DXDϕSϕⁿJM@B@t÷ⁿO

M⌠C

rΘDUCrΘDG

Θ XbσrpgⁿOBVjpgⁿOBⁿO

∩MXoABHΘr¼πC

@δ ]°íM∩Dú

H÷ΣWA]OoABHΘr

¼πC

Θ zúMBsⁿJAHjr

ⁿMyoABHΘr¼πC

xiTivoli SecureWay Policy Director Web Portal Manager zΓU

Ñe XbOrµñⁿOBⁿO∩MXBí

XdBΘXMTºσroABHÑ

er¼πC

M²WBzΣJrΩ]Xbσr

ñB Java ΦkMOWH HTMLM XML OoABHÑer¼πC

°@twM⌠ UNIX Dⁿw⌠M²ϕkC

Windows ⁿOµAH⌠ %variable% N⌠

$variableFN²⌠ñu (/) í½¿u(\)C

: b Windows tW Bash Shell Ai UNIX DC

xii 3.8

Web Portal Manager

Tivoli Policy Director 3.7 /3.7.1 Java™ ¼W í

zDx@ Policy Director zz GUICbSú@s ≤A Web Portal Manager C Tivoli Policy Director 3.8úo Web ¼ ≤izw⌠whCWebPortal Manager izBsBñΓB\ivBhHísv¡C

AWeb Portal Manager ú@\αAe⌠MñΓz. Tivoli Policy Director zio\α e⌠⌠AⁿwSw@e⌠⌠z

Cozú≤Sw¼zAi∩e⌠⌠

ñ⌡µSwwqz\αlC

: PTivoli® SecureWay Policy Director Base zΓUftCzΓU∩≤ Tivoli SecureWay Policy Director t\αMz@íCWeb Portal Manager úWeb ¼sΦí²zso\αAWeb Portal Manager ΓUh²z⌠xosC]AWeb Portal Manager ΓUwzw\¬ATivoli® SecureWay Policy Director BasezΓUñ\αB@HíC

1

1Tivoli SecureWay Policy Director Web Portal Manager zΓU

1.W

ebP

ortal

Man

ager

tmMNN Tivoli SecureWay Policy Director Web Portal Manager ]pÑAªO@i²zb Web s²W Web íCª Web íN JavaServer Pages (JSP)]t Web °Az\αΦMeµíCP Web Portal Manager ÷Dn ≤úπb 1 ñAbHUMµñ[HíG

¶ Web s². Q HTML ϕµú Policy Director z\αC

¶ Web °A. ¼s²oX HTML ϕµnDAIsJSP Cns HTML ϕµ]tznDGßAWeb °ANnϕµ s²CTivoli PolicyDirector °AO IBM WebSphere úH IBMHTTP Server.

¶ JSP . ⁿJ∩≤ HTML ϕµnDñⁿwº JSP Java .class CTivoli Policy Director Q IBM®

WebSphere® úñ JSP F¿oC

1. Tivoli Policy Director ≤

2 3.8

¶ JSP . g JSP σRßúY .class Atz\α⌡µΦC

¶ z API Java wrapper ñí. .class oXzAPI IsC

¶ Tivoli Policy Director Runtime Environment M ManagementServer z APICz APIB≥ªqHHi⌡µz\αΩ°AíXC

p 1 Aun Web Portal Manager AKiq Web s²sz\αCúbs²≈WtwΣLn

ΘCCz\αú@i∩ HTML ϕµAϕµñt JSPMΩΘJΩTCϕzbs²eW÷@U÷sAH

K z\αnDAWeb °AKQ JSP ΩTIs JSP CAJSP ⁿJ∩≤ JSP .class ]@s JSP AJSP σR @ .java AMßAN .java s¿ .class CpGHTML ϕµñΩΘJAⁿJ .class KNΩJCA.class Isz API Java wrapper ñíoX⌡µ⌠ú API IsCϕz°Aí¼znDAB Java wrapper ñí] GßA.class @tG HTML ϕµAMßA Web °ANϕµ s²C

o HTML sOOO@CTivoli PolicyDirector N@sz½sVnJAHKiµo¡≈τCQnJß

@lA¬\αϕñCzi\

αC

≤≈KΩ]pnJKXΩy≤ Web s²M Web °AºíAHuw Socket hv(SSL) \α]zL HTTPSt≤ Web s²M Web °AO@ Web s²MWeb °AºíqHC

3Tivoli SecureWay Policy Director Web Portal Manager zΓU

1.W

ebP

ortal

Man

ager

4 3.8

w Web Portal Manager

w Web Portal Manager ºeA∩≤ Web Portal Manager HzniµtmMªAz²RACú

HUU≤Uz⌠xoMMªG

¶ nwΘD

¶ wW

¶ wtm IBM WebSphere Application Server 3.5

¶ wtm IBM WebSphere Application Server Fixpack 4

¶ wtm Tivoli SecureWay Policy Director RuntimeEnvironment M Management Server

¶ wtm Web Portal Manager

nwΘD°An 256 MB OΘC 512 MB °AOΘCWebSphere ªvwΘDAzibHU⌠ΣDG:

h t tp : / /www–4. ibm.com/sof tware/webservers /appserv/doc/latest/idx_hwa.htm

2

5Tivoli SecureWay Policy Director Web Portal Manager zΓU

2.w

Web

Po

rtalM

anag

er

Tivoli SecureWay Policy Director Web Portal Manager iΣUC°A¡x:

¶ t Service Pack 6a Microsoft Windows NT® 4.0

¶ t Service Pack 1 Microsoft Windows 2000

Web Portal Manager iΣUCs²:

: os²ib⌠≤Σs²¡xW⌡µCpΣ¡xΣL÷ΩTA\s²WµC

¶ Netscape 4.6 M 4.7

¶ Internet Explorer 5.0 M 5.5

wWw Web Portal Manager ºeA²\@WMWMªCoNbHUUñQC

nΘw Web Portal Manager ºeA⌡µUCBJG

: Web Portal Manager CD @÷w ScriptAiw Web Portal Manager MnΘCp÷wΣL÷ΩTA\7y÷wzC

1. wtm Tivoli SecureWay Policy Director RuntimeEnvironment M Management Server . pΣL÷ΩTA\13ywtm Tivoli SecureWay Policy DirectorRuntime Environment M Management ServerzC⌡µ⌠M IBM WebSphere Application Server wbP@í≈WCz°Ahiwbt@í≈WC

2. wtm IBM WebSphere Application Server 3.5. pΣL÷ΩTA\13ywtm IBMWebSphere Application Server 3.5 zC

6 3.8

3. wtm IBM WebSphere Application Server Fixpack 4. pΣL÷ΩTA\1 7ywtm I B MWebSphere Application Server Fixpack 4zC

÷wpGzn÷w Script ezinstall_pdwpm.batw WebPortal Manager A⌡µUCBJG

1. ⌡µ Tivoli SecureWay Policy Director Web Portal Manager CDW ezinstall_pdwpm.bat Web Portal Manager ÷wC

2. ziαHUúG²ewgBzCzn C:\TEMP\EZINSTALL.RSP @H[y | N]CpGz²eL÷w Script]]A⌠≤ Tivol iSecureWay Policy Director Base ÷w ScriptAhzu@ CpGznAΘJ yC

pGwπ AtKliµwAw

nnΘCpG úπA≥⌡µBJ 3C

pGzúQ AQiµqwA∩ nAMß≥⌡µBJ 4C

TVT ⁿGresponsefile.gif

7Tivoli SecureWay Policy Director Web Portal Manager zΓU

2.w

Web

Po

rtalM

anag

er

: pG⌡µ⌠Bz°AHΓnΘúwgwnFAhúAπ IBM HTTP ServerBIBMSecureWay Directory Client H⌡µ⌠Ñtm°íCñLo∩÷BJC

3. ⌡µUCBJAHKúπ wtm WebPortal ManagerG

: UC°íziαíúoA]iαuo@í≈A° ewCϕ ñY°íA

°íXC

a. twtm GSKitC

b. eWπuIBM SecureWay Directory Client wmv°íCΘJ²qwmAMß÷ Enter ΣC

c. eWπuIBM HTTP Server tmv°íCΘJzKXAMß÷ Enter ΣC

TVT ⁿGibmhttp.gif

d. eWπuWebSphere tmv°íCΘJzKXAMß÷ Enter ΣC

8 3.8

TVT ⁿGwebsphere.gif

e. tliµwAwUC ≤G

¶ GSKit

¶ IBM SecureWay Directory Client

¶ runtime environment

¶ IBM WebSphere Application Server 3.5

¶ IBM WebSphere Application Server Fixpack 4

¶ Web Portal Manager

4. ⌡µUCBJAHKbú ípUiµ WebPortal Manager wMtmG

a. eWX@°íA°íñCtWwgw ≤C÷U Enter Σ≥⌡µC

9Tivoli SecureWay Policy Director Web Portal Manager zΓU

2.w

Web

Po

rtalM

anag

er

TVT ⁿGezinstallno.gif

b. twtm GSKitC

c. eWπuIBM SecureWay Directory Client wmv°íCΘJ²qwmAMß÷ Enter ΣC

d. eWπuIBM HTTP Server tmv°íCΘJzKXAMß÷ Enter ΣCtúzΘJi@B≤A÷ Y ≥⌡µC

TVT ⁿGibmhttp2.gif

10 3.8

e. eWπu⌡µ⌠tmv°íCtúzΘJ LDAP °AD≈WBrHz°AWCtúzΘJi@B≤A÷ Y ≥⌡µC

TVT ⁿGruntimeconfig.gif

f. eWXHUúGpGzw PDMgr \Uⁿ@AN∩dChAⁿw PDMgr tmí pdcacert.b64 CΘJ Policy Director ⌠GFϕzHWúApGzS

z°A\Uⁿ@AΘJzn

ºπ⌠AMß÷ Enter ΣC hAN∩dAMß÷ Enter ΣC

g. eWπuWebSphere tmv°íCΘJzKXAMß÷ Enter ΣC túzΘJi@B≤A÷ Y ≥⌡µC

11Tivoli SecureWay Policy Director Web Portal Manager zΓU

2.w

Web

Po

rtalM

anag

er

TVT ⁿGwebsphere2.gif

5. tliµwCϕ ≤úwnA÷UEnter Σ½sz≈CAw°íπww ≤C

TVT ⁿGinstallfinish.gif

UAt∩ww ≤iµtmAoN¿Fw

Mtm@C

12 3.8

wtm Tivoli SecureWay Policy DirectorRuntime Environment M Management Server

w Tivoli SercureWay Policy Director Runtime Environment MManagement Server oΓ ≤ºeA²\Tivoli® SecureWayPolicy Director Base wΓUñⁿC⌡µ⌠Mz°AC@nΘúwC

wtm IBM WebSphere Application Server 3.5

iµ WebSphere wAYBzCo]AG

¶ WebSphere M LDAP °A≡

¶ σ¼Mq WebSphere w

¶ Websphere wßwnD

WebSphere M LDAP ≡w WebSphere ßAt@BzCpG WebSphere MLDAP °AtmbP@í≈WAhªH IBM HTTP Server@ Web °AC LDAP w]≡O 8080 AWebSphere w]≡hO 80CpG WebSphere ≡] LDAP tm≤ 8080ANª∩ 80C∩HU IBM HTTP Server tmAYi≤≡C:

drive:\IBM HTTP Server\conf\httpd.conf

pG WebSphere M Tivoli SecureWay Policy Director WebSEALtmbP@í≈WAz≤ WebSEAL ≡C∩WebSEAL tmAKi≤ WebSEAL ≡Cp

WebSEAL tmΣL÷ΩTA\÷σ≤C

σ¼wMqww WebSphere AzΓΦíiH∩Gσ¼MqCσ¼wCpGz∩qwAz⌡µUCΣñ@

G

13Tivoli SecureWay Policy Director Web Portal Manager zΓU

2.w

Web

Po

rtalM

anag

er

¶ w∩Ωw¼µ∩ InstallDBC

¶ WebSphere AΩwC

pσ¼wMqwΣL÷ΩTA\ WebSphere wíσ≤C

wnDtmíbiµtmAtm IBM WebSphereApplication ServerAHKzL≡ 443 Σuw Socket hv(SSL)Cttm IBM HTTP Server tm httpd.confAgtmßAIBM HTTP Server KiΣπ SSL \αΩD≈CQ¿tmßAzε½s IBM HTTPServerC

tmíQútmú IBM HTTP Server tm httpd.conf ≤Cbßε½s IBM HTTP ServerºeAIBM HTTP Server i≥ú SSL ΣC

te Web Portal Manager ]HFHUñAz²NJ Web s²ñAα HTTP sC

drive:\WebSphere\AppServer\hosts\default_host\pdadmin\config\pdwpm.arm

Σñ drive Oⁿw WebSphere ≈C]Ad≈ΩwM⌠CΘO 2003 8 δ 30ΘC

ozv∩ IBM HTTP Server tmhttpd.confAoA°AαΣ≈smC

wBJUCBJw IBM WebSphere Application Server 3.5G

1. q Tivoli SecureWay Policy Director Web Portal Manager CDño IBM WebSphere Application Server 3.5 wíXC

14 3.8

2. ⌡µ setup.exe InstallShield íC

3. ∩AϕyÑAMß÷@UTwC

TVT ⁿGwsinstall1.gif

4. ∩tw]w]∩AMß÷@U÷@UC

TVT ⁿGwsinstall2.gif

5. buw∩v°íñΘJWBKXHTKXAMß∩U@BCoOA≤ WebSphere WMKXABO≈W ID MKXC

15Tivoli SecureWay Policy Director Web Portal Manager zΓU

2.w

Web

Po

rtalM

anag

er

TVT ⁿGwsinstall3.gif

6. InstallShield íe WebSphere Application Server ²M IBM HTTP Server w]⌠CpG≈WwgwIBM HTTP ServerAhúXo∩C∩U@BAϕ

ⁿow]C

TVT ⁿGwsinstall5.gif

16 3.8

: OUo⌠A]w WebSphere Application ServerFixpack 4 o⌠Cí°Aw]⌠O c:\WebSphere\AppServerCpG IBM HTTP Server Obw WebSphere @wAªw]⌠KOc:\IBM HTTP ServerCpG IBM HTTP Server ObiµWeb Portal Manager ÷w Policy Director w@wAªw]⌠hO c:\Program Files\IBM HTTPServerC

7. ∩uWindows íΩ¿vmFw]mO IBMWebSphere\Application Server V3.5C∩U@BC

TVT ⁿGwsinstall4.gif

tliµwCw¿XúA

zO n½s WindowsC

8. ∩ún½s WindowsCwn Fixpack ßAt½s≈C

wtm IBM WebSphere Application ServerFixpack 4

UCBJw IBM WebSphere Application Server Fixpack4G

17Tivoli SecureWay Policy Director Web Portal Manager zΓU

2.w

Web

Po

rtalM

anag

er

1. q Tivoli SecureWay Policy Director Web Portal Manager CDño IBM WebSphere Application Server Fixpack 4 íXC

2. N PTF4 ²s≈Ws²C

3. ⁿOúAN²≤s²C

4. qm⌡µ install.batC

5. XHUúGΘJ IBM WebSphere Application Serverw²AΘJ²AMß÷ Enter ΣFw]Oc:\WebSphere\AppServerC

6. XHUúGzn WebSphere Application ServerdHA∩C

: evXu\ WebSphere @ Web PortalManager C∩Oy¿HABiαIX

B¿C

7. XúπHUiTºGpGzw IBM HTTPServer PTFAziαLkNªúwA]zLkúw GSKit M≤Czn IBM HTTP Server 1.3.12 HA∩ OC

8. XHUúGΘJ IBM HTTP Server 1.3.12 w²CAΘJ²AMß÷ Enter ΣFw] c:\IBMHTTP Server c:\Program Files\IBM HTTP ServerC

@HYliµCoúπHUTºGb

IBM JDK 1.2.2CíN IBM Developer Toolkitfor Windows® 1.2.2 wb WebSphere ²UCpGuπcOwb≈WΣLmA@úy¿≡C

@¿AúπHUTºGw@wg

¿ABS⌠≤CpA°íΘxC÷⌠

≤Σ≥⌡µC

9. ÷⌠≤Σ≥⌡µC

18 3.8

10. oAWebSphere Application Server 3.5 M Fixpack 4 NwnFC½s≈C

wtm Web Portal ManagerUCBJw Web Portal ManagerCw Web PortalManager ºeA²⌡µ IBM WebSphere Application ServerC

1. pGzní°AA∩l→í→IBMWebSphere→Application Server V3.5→z°AC

BJ⌡µ@ 50–60 MB Java íí°AA]\nα¿@Aí°u°t

wC

2. ⌡µ Tivoli SecureWay Policy Director Web Portal Manager CDW Windows\PolicyDirector\DiskSpaceImages\Disk1\PDWPM\DiskSpaceImages\Disk1\Setup.exe WebPortal Manager InstallShieldC

3. ∩AϕyÑAMß÷@UU@BAeWπ

uWeb Portal Manager vXv∩C

TVT ⁿGchooselang.gif

4. ∩OAⁿvXAMßwCwK

i¿C

19Tivoli SecureWay Policy Director Web Portal Manager zΓU

2.w

Web

Po

rtalM

anag

er

TVT ⁿGlicense.gif

wn Web Portal Manager ßAzuTivoli SecureWayPolicy Director tmívtm Web Portal Manager. ∩l → í → Policy Director → tmπtm

íCíO@ϕµAϕµñC] PolicyDirector Web Portal Manager (PDWPM)C

5. ∩CAMß÷@UtmCtHYliµtmCt

mΘx≤ c : \ P r o g r a m F i l e s \ T i v o l i \ P o l i c yDirector\log\pdwpm.logAñCtmíCΘxM Tivoli SecureWay Policy Director Runtime Environment ≤P@²≡C

6. ¿tmßAzε½s IBM HTTP ServerC∩l→í→IBM HTTP Server→ε HTTP Server ε°AAMßA∩l→í→IBM HTTP Server→ HTTP Server ½s°AC

7. bs²ñΘJHU⌠ Web Portal ManagerG

https://host_name/pdadmin

oeWπwsu∩ABXuw∩

Web Portal ManagerveC

20 3.8

ú Web Portal Managerz²UCBJú Web Portal Manager tmAαú Web Portal ManagerG

1. ∩l→í→Policy Director→tmπtmíC

tmíπ@ϕµAϕµñC] O PolicyDirector Web Portal Manager (PDWPM)C

2. ∩CAMß÷@UútmAtKliµútm

CtmΘx≤ c:\Program Files\Tivoli\PolicyDirector\log\pdwpm.logACtmíCΘxM Tivoli SecureWay Policy Director Runtime Environment ≤P@²≡C

3. útm¿ßA Windows usW/úívú Web Portal ManagerC∩l→ ]w→ εx → s

W/úíπusW/úíev∩C

4. buw/úwvWíMµA∩ PolicyDirector Web Portal ManagerAMß÷@UsW/úCt

HYúíC

5. íúßA∩Tw÷¼∩C

°w Web Portal Manager ⌠≤nΘpGJ DAzi@BJJípC

pG Web Portal Manager wßLkAd WebSphere °ASb⌡µCziQuWebSphere zDxviµodCoDxuαd°A¼ACΣL⌠≤\

αúiαvT WebSphere Application Server w@A]PLklaC

UCBJπuWebSphere zDxvd°A¼AG

21Tivoli SecureWay Policy Director Web Portal Manager zΓU

2.w

Web

Po

rtalM

anag

er

1 . pGnπzDxA∩l →í → I B MWebSphere→Application Server V3.5→zDxC

2. ∩iHUUG

¶ uWebSphere z⌠v

¶ D≈W

¶ w]°A

¶ w] Servlet

3. τ pdadmin O Cbuw] Servlet vUΦAτuw] Servlet vΦO eΓ]ϕb⌡µCpGΦe⌡ΓAϕ°AwgεC

4. pG°AwgεAH∩AMß÷@UC°A

HYAΦ]ΓC

pG WebSphere Application Server b⌡µAU@ndKO IBM HTTP Server. 19ywtm WebPortal Managerzñⁿε°ACpG Web PortalManager LkB@ApuTivoli ßΣñvC

22 3.8

Web Portal Manager z

Web Portal Manager ≤i²z e⌠⌠AⁿwSw@e⌠⌠zCozú

≤Sw¼zAi∩e⌠⌠ñ⌡µSw

wqz\αlC

º[Web Portal Manager ⌠ñΓiú¿G\αϕM\αC¬Σ\αϕ]iúO@ HTML AñN Policy Director iz½≤πWh\αϕANΣz½≤z\απUh\αϕC

TVT ⁿGz]w@°⌠B@B@ñΓHuPolicy Director zvAαuTivoli SecureWay PolicyDirector Base zΓUvC\Xñ TVT ⁿ²∩X⌡µ TVT AHKTwziseCtAHPolicy Director z¡≈nJ Web Portal ManagerCmenuframe.gif

3

23Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

C@l\αϕ]\αúO@ HTML G÷@U⌠@ßA∩\αKπb⌠kΣC

TVT ⁿGfunctionframe.gif

2. \αϕ

24 3.8

C@\αúªvΘJµ M@÷s. ±nnΘJµA÷@UAϕ@÷sßAKi⌡µ\

αABG]πbñCpGS±nnµK

÷U@÷sAeW YπúCϕ\αQ⌡µ

ªAB⌡µßúΩ]πXAúC@Ω

úiαO@ HTML F÷@U⌠@ΩAKiπt@\αC

pAb\αϕñ÷@U → jMßAujMv

\αHYXbkΣCΘJjMhßA\απ

MµñKXGCMµñC@úi

uev \αAñπe

eC

HUUwΦíOH\αϕeÑh

CÑhñeΓb@ñeAß≥h@

ºßUñOeCß≥UúA½eΓC±Φ

3. \α

25Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

íA@DO → jMAGDO

eAGΩ⌠hO → jM → e.

nJnX Web Portal ManagerbS Tivoli SecureWay Policy Director nJ⌠wqípUAzLknJ Web Portal Manager ⌠A²tNz½sV⌠Cbz÷@U\αϕWnX\α

ßAϕznJÑq@LAunJvúπz

@s Web Portal Manager íC

UCBJnJ Web Portal ManagerG

1. bs²ñΘJHU⌠ Web Portal ManagerG

https://<host name>/pdadmin

pGzúΓ S S LAΘJ h t t p : / / < h o s tname>/pdadminCeWπwsu∩ABXuw∩ Tivoli SecureWay Policy Director Web PortalManagerveC

TVT ⁿGlogin.gif

2. buw∩vσrµñΘJ ID MKXC

26 3.8

3. ∩nJ. nJóAeWπTºCpGnJQ¿AtNzVleAle¬Σ\αϕ

C

TVT ⁿGwelcome.gif

UCBJnX Web Portal ManagerG

1. ∩\αϕWnXCtHYúz PolicyDirector nJ⌠wqC

2. oeWπunJvC

@\αϕWY ΓlYGjMMCo\

αU≤MΣe Tivoli SecureWay Policy Director BπsΦeAH sC

TVT ⁿGusertasks.gif

27Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

→ jMujMv\αú@í ID jM\αAiMΣ Policy Director C

TVT ⁿGusersearch.gif

UCBJjM Policy Director G

1. bWLoµñΘJjMhCziUr (*) jMíXC

: pGzQπYSw IDAΘJπ IDFΘJßAeWπeADGMµC

2. ΘJznbⁿJpjµñπGFw]O

100CΘJⁿJpjVjA íVCC

4. u@v\αϕ

5. jM

28 3.8

3. ∩jMCjM@HYliµAG]πbHUY

UΦGUCXjMhGC

TVT ⁿGusersearchresults.gif

GMµπC@ ID úO@iπºuev\αCpeΣL÷Ω

TA\yezC

euev\αiπ∩w÷eCz

i∩eBq Policy Director n²ñRúA]iπuGSO vC \αC

TVT ⁿGuserproperties.gif

29Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

HUOeG

¶ ID]úi∩

¶ KX

¶ τKX

¶ í

¶ Wr]úi∩

¶ m≤]úi∩

¶ LDAP DN ]úi∩

¶ Obß]∩

6. e

30 3.8

¶ OKX]∩

¶ O GSO ]∩

¶ s¿Ωµ

esúπbs¿Ωµs

MµñCnsWssAbsσrµñΘJsWA

Mß÷@UsWCsWHYsWMµñCnúYs

AbMµñ∩sWAMß÷@UúCsW

HYqM椣C

pGnπsMµA÷@UCXCeWHYπ

usjMv°íC

TVT ⁿGgrouplist.gif

7. sMµ

31Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

UCBJjMsG

1. bWLoµñΘJjMhCziUr (*) jMíXC

: pGzQπYSws IDAΘJπ IDFΘJßAeWπseADGMµC

2. ΘJznbⁿJpjµñπGFw]]w

O 100CΘJⁿJpjVjA íVCC

3. ∩jMCjM@HYliµAG]πbHUY

UΦGjMGC

bGMµñ∩nsWsAMß÷@UMC∩

÷¼A÷¼sMµ°íC

∩½]AKiNµml¼pF²bzST

wznDS∩∩ípUAαmµCp

Gzn∩eAbUσrµM∩ñiµ≤AMß∩

∩C∩@Q¿Auev\α

½sπzAi≤seC

nq Policy Director n²ñRúA∩uev\αRúoCpGnq LDAP M PolicyDirector n²ñRúA∩nRú LDAP H

∩AMßA∩RúoC∩ GSO Kiπ

uGSO v\αC

: O GSO AX GSO Cp

GúO GSO AeWπ@hTºAⁿXúO GSO APπuev\αC

32 3.8

e → GSO uGSO v\αiπuTivoli SecureWay snJvH∩wsCziqoñ Rú

oC

TVT ⁿGgsocred.gif

C@súCb@iϕµñABΣú

∩CnRú⌠≤A∩∩∩AMß÷@UR

ú÷sCRú@Q¿AuGSO v\α½sπzAi≤sC

e → GSO → GSO GSO s

u GSO vMu GSO svoΓ\αi ∩wsuTivoliSecureWay snJv sC

TVT ⁿGgsocredcreate.gif

8. GSO

33Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

UCBJ sC

: OM sBJ@CunbBJ 1ñHs GSO ID N GSO ID YiC

1. bUCµñΘJnΩTG

¶ GSO ID

: o ID OuTivoli SecureWay snJvΩC

¶ nJ ID

¶ KX

¶ τKX

2. ∩CpGQ¿AeWπCs

uGSO v\αCpGLkQ¿AeWPπuGSO v\αMTºC

9. GSO

34 3.8

→ u Policy Director v\αi²z s PolicyDirector Co\απσrµM∩≥uev\απ@CpoeΣL÷Ω

TA\29yezC

TVT ⁿGusercreate.gif

UCBJ sG

1. ΘJs Policy Director eC IDBKXBτ

KXBm≤H LDAP DN ÑúOnµC

2. pGoKXPe Tivoli SecureWay PolicyDirector KXhúA∩∩LKXh∩Co

∩A≤l CnßAKúiA

o∩C

3. bs¿Ωµsñv@ΣJsWC

CΣJ@WAK÷@UsWCpGnπsM

µA÷@UCXCeWπsjM\αCps

jM\αΣL÷ΩTA\317C

10. u v\α

35Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

4. pGnNµml¼pA∩½]C²∩

Aαo∩mµC

5. ΘJΩTßA∩ sCpG

LkQ¿AeWπTºAúT]

H≤CpGQ¿AeWπTºAⁿX

wT¿CtAeWπsºu

ev\αC

s@\αϕñsYΓlYGjMMCo\α

U≤MΣe Policy Director sBπsΦseAH ssC

TVT ⁿGgrouptasks.gif

s → jMusjMv\αú@ís ID jM\αAiMΣ Policy Director sC

TVT ⁿGgroupsearch.gif

11. us@v\αϕ

36 3.8

UCBJjM Policy Director sG

1. bWLoµñΘJjMhCziUr (*) jMíXC

: pGzQπYSws IDAΘJπ IDFΘJßAeWπseADGMµC

2. ΘJznbⁿJpjµñπGFw]]w

O 100CΘJⁿJpjVjA íVCC

3. ∩jMCjM@HYliµAG]πbHUY

UΦGUCsXjMhGC

12. sjM

37Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

TVT ⁿGgroupsearchresults.gif

GMµπC@s ID úO@iπsº

usev\αCpse÷ΩTA\

seC

seusev\αiπ∩ws÷eCzi

∩seq Policy Director RúsC

TVT ⁿGgroupproperties.gif

38 3.8

HUOseG

¶ s ID]úi∩

¶ í

¶ LDAP CN]úi∩

¶ LDAP DN]úi∩

pGzb∩eßQnNsem²e]wA

∩½]F²bzSTwznDS∩∩s

ípUAαo∩C

pGn∩eAiµzn≤AMß∩∩sC

∩@Q¿Ausev\α½sπzAi≤

seCnq Policy Director sn²ñRúsA∩usev\αRúosCpGnq LDAP M PolicyDirector sn²ñRúsA∩nRú LDAP H

∩AMßA∩RúoC

13. se

39Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

∩sWs¿πusWs¿v\αCs

i⌡µOsW\αCΘJnsWsñ

IDAMß÷@UsWCsi²z⌡µsjM

MΣCpjMΣL÷ΩTA\28y → jMzCGMµñπΣCnNsWsA∩Σ∩AMß÷@Us

W∩wC

TVT ⁿGaddgroupresults.gif

∩es¿πues¿v\αCo

i²z⌡µjM\αMΣ≤∩ws¿

C∩ws¿úπbGMµñCpGnú

sñA∩Σ∩AMß÷@Uú

∩C

TVT ⁿGcurrentgroupresults.gif

14. sWs¿

40 3.8

s → u Policy Director sv\αi²z s PolicyDirector sCo\απσrµ≥usev\απ@CpoeΣL÷ΩTA\

38ysezC

TVT ⁿGgroupcreate.gif

15. es¿

41Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

UCBJ s Policy Director sG

1. ΘJs Policy Director seCs ID M LDAP DN úOnµCp LDAP DN Aϕyk÷ΩTA\HU⌠W LDAP Ω@ΓUG

http://w3.itso.ibm.com/itsoapps/Redbooks.nsf

2. ΘJss∩½≤tmCoi²zbSw TivoliSecureWay Policy Director ½≤íñ ssCp PolicyDirector ½≤íΣLA\Tivoli® SecureWay PolicyDirector Base zΓUC

3. pGnNµml¼pA∩½]CbS

∩sípUAαo∩mµC

4. ΘJΩTßA∩s ssCpGL

kQ¿AeWπTºAúT]

H≤CpGQ¿AeWπTºAⁿXw

T¿CtAeWπsºusev\

αC

16. s

42 3.8

ⁿO@½≤í@\αϕñ½≤íY@lYGs²Co\αi

π Policy Director ½≤íÑhH½≤íeC

TVT ⁿGobspacetasks.gif

½≤í → s²us²½≤ív\αCe≤h Tivoli SecureWayPolicy Director ½≤íAH[C½≤ísεMµ (ACL) MⁿO@½≤h (POP)C

TVT ⁿGobspacebrowse.gif

17. ⁿO@½≤í@

18. s²½≤í

43Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

Σi (+) C@½≤íúiiπªl½≤C÷@Uiπl½≤CHY≤sπ½

≤íñP@hl½≤C[ol½≤ ACL MPOP ]πXC

πC@½≤íúOAiπ½≤í

uⁿO@½≤ev\αCp½≤íeΣL÷

ΩTA\yⁿO@½≤ezCAπC@

ACL POP ]úOAiπuACL ev\αuPOP ev\αCp ACL M POP eΣL÷ΩTA\48yACL ezM60yPOP ezC

ⁿO@½≤euⁿO@½≤ev\αiπ∩w½≤í÷

eCzi∩½≤íeA]A[úh ACL M POPC

TVT ⁿGobspaceprop.gif

HUO½≤íeG

19. ⁿO@½≤e

44 3.8

¶ ⁿO@½≤ ID]úi∩

¶ í

¶ ¼]iπ½≤í¼U\αϕ

¶ iNuhv[o½≤H

¶ [ ACL

¶ [ POP

pGo½≤í[ ACL POPAun∩úhAKiúh

[ ACL POPCpGn∩eAiµzn≤AMß∩∩sC∩@Q¿AuⁿO@½≤ev

\α½sπzAi≤seC∩Yiπ

½≤íeA½≤í sC

ⁿO@½≤e → uv\αiπ½≤íC∩w½≤

úπbϕñAπ]AWM

Czi Rú½≤íC

TVT ⁿGobspaceextend.gif

45Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

¶ pGn s½≤íA∩sπ

u v\αCp @

÷ΩTA\yⁿO@½≤e → → zC

¶ pGnRúA∩znRúΣ∩

AMß÷@URúCQ¿Auv

\αñπ≤sϕC

ⁿO@½≤e → → u v\αi²z s½≤íC

TVT ⁿGobspaceextendcreate.gif

20. ½≤í

46 3.8

UCBJ sG

1. bWσrñΘJWC

2. bσrñΘJC

3. ΘJΩTßA∩ sCQ¿

AeWπuv\αAϕñ]CX

sC

sεMµ@\αϕñ ACL YTlYGCXBH\iv

íCo\αi⌡µUC@GCX Policy DirectorACLFπBsΦRú ACL eM ACL eFsACLFMΣ[ ACL ½≤FN ACL [½≤íF ACLF Rú ACL F°\ivíC

TVT ⁿGacltasks.gif

21. ½≤í

47Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

ACL → CXuACL Mµv\αiCX Policy Director ACLCπC@ ACL úOAiπ ACL uACL ev\αC

TVT ⁿGacllist.gif

ACL euACL ev\αiπ∩w ACL ÷eCzi∩ ACL eBRú ACLA]i B∩Rú ACL C

22. ACL @

23. ACL Mµ

48 3.8

TVT ⁿGaclprops.gif

HUO ACL eG

¶ ACL ID]úi∩

¶ í

¶ ACL

bσrµñΘJσríAMß∩]wíAKi]w ACLíC

∩w ACL º ACL úHíCXb

sñCzi B∩Rú ACL C

¶ pGznπ ACL eA∩ ACL A∩ßAeWKπuACL ev\αCp ACLeΣL÷ΩTA\50yACL e →ACL ezC

24. ACL e

49Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

¶ n s ACL A∩sπu ACLv\αCp ACL @ΣL÷ΩTA\51yACL e → ACL zC

¶ pGnRú ACL A∩znRú ACL Σ∩AMß÷@URúCQ¿AuACL evñπ≤s ACL ϕC

ziqo\α⌡µΣL\αG

¶ pGnse ACLA∩sπus ACLv\αCp ACL s@ΣL÷ΩTA\53yACL e → s ACLzC

¶ pGznMΣ[ ACL ½≤A∩MΣπ

uACL jMGv\αCp÷MΣ[ ACL ½≤ΣLΩTA\53yACL e → ACL jMGz C

¶ pGznN ACL [½≤íA∩[πu[

ACLv\αCp÷N ACL [½≤ΣLΩTA\54yACL e → [ ACLzC

¶ pGznπB Rú ACL A∩

πuv\αCpΣL÷Ω

TA\55yACL e → zC

¶ pGznRúo ACLA∩Rúo ACLCtHYqPolicy Director ñRú ACLC

ACL e → ACL euACL ev\αiπ∩w ACL ÷eCzuα∩ ACL \ivC

TVT ⁿGaclentryprops.gif

50 3.8

HUO ACL eG

¶ ACL]úi∩

¶ ¼]úi∩

¶ W]ϕu¼vOsπ

¶ \iv

∩°∩\iv∩AKi≤ ACL \ivCpGznNµml]wA∩½]F²bz

STwznDABS∩∩\ivípUAα

o∩C∩n∩ßA÷@U∩\ivAYi≤\

ivCQ¿AeWπuACL ev\αC

ACL e → ACL u ACL v\αi²z s ACL C

TVT ⁿGaclentrycreate.gif

25. ACL e

51Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

UCBJ sG

1. Uí\αϕ∩¼Gzi∩BsB

Any-other gOC∩si s

\ivCpGnwgOA²TC ACL ú≤ ACL CXs¿º⌠≤ \ivA∩ Any-otherCpGnΣLgO \ivA∩gOC

2. pGz∩¼OsAbWσr

ñΘJWCpGz∩OΣL¼A⌡BJ

3C

3. b\ivíµñΘJ\ivC∩°∩\iv

∩ΘJn\ivC

4. pGnN½]²e]wA∩½]Cb

S∩ípUAαo∩mµC

5. ΘJΩTßA∩ sCQ

¿AeWπuACL ev\αAϕñ]C

XsC

26. ACL

52 3.8

ACL e → s ACLus ACLv\αi²zse ACLCo\αi @Pe ACL tP ACL s ACLC

TVT ⁿGaclclone.gif

UCBJs ACLG

1. ΘJs ACL ID MíC

2. ∩s ACLCQ¿AeWπs ACL uACL ev\αCs ACL Ml ACL ePAtOubs ACL ts IDC

ACL e → ACL jMGuACL jMGv\αiπ[∩w ACL ½≤CπC@½≤úOAiπ½≤uⁿO@½

≤ev\αCp½≤íeΣL÷ΩTA

\44yⁿO@½≤ezC

27. s ACL

53Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

TVT ⁿGaclpropfind.gif

ACL e → [ ACLu[ ACLv\αi²zN ACL [½≤í½≤CpGznN ACL [½≤í½≤AbσrñΘJ½≤π⌠AMß÷@U[CQ¿AeWπ

∩w ACL uACL ev\αC

TVT ⁿGaclpropattach.gif

28. ACL jMG

54 3.8

ACL e → uv\αiπ ACL C∩w ACL úπbϕñAπ]AWM

Czi Rú ACL C

TVT ⁿGaclext.gif

29. [ ACL

55Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

¶ pGn s ACL A∩sπ

u v\αCp @ΣL

÷ΩTA\yACL e → → zC

¶ pGnRúA∩znRúΣ∩

AMß÷@URúCQ¿Auv

\αñπ≤sϕC

ACL e → → u v\αi²z s ACL C

TVT ⁿGobspaceextendcreate.gif

30. ACL

56 3.8

UCBJ sG

1. bWσrñΘJWC

2. bσrñΘJC

3. ΘJΩTßA∩ sCQ¿

AeWπuv\αAϕñ]CX

sC

ACL → u ACLv\αi²z s ACLC

TVT ⁿGaclcreate.gif

31. ACL

57Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

UCBJ s ACLG

1. b ACL ID σrñΘJ ACL IDC

2. bíσrñΘJ ACL íC

3. ΘJΩTßA∩ ACL s ACLCQ¿AeWπuACL ev\α²z⌡µ ACLz\αCp ACL eΣL÷ΩTA\48yACL ezC

ACL → \ivíuACL\ivív\αiπ Policy Director \iv]wíCzibuACL evMu ACL vñ]wo\ivCp\iv]wΣL÷ΩTA

\50yACL e → ACL ezM51yACL e → ACL zCuA≤ΩTC

TVT ⁿGaclperm.gif

32. ACL

58 3.8

ⁿO@½≤h@\αϕñ POP YΓlYGCXMCo\α

i⌡µUC@GCX Policy Director POPFπBsΦRú POP eFMΣ[ POP ½≤FN POP [½≤íF POPF Rú POP C

TVT ⁿGpoptasks.gif

33. ACL \iví

34. POP @

59Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

POP→ CXuPOP Mµv\αiCX Policy Director POPCπC@ POP úOAiπ POP uPOP ev\αC

TVT ⁿGpoplist.gif

POP euPOP ev\αiπ∩w POP ÷eCzi∩ POP eA]iRú POPC

TVT ⁿGpopprop.gif

35. POP Mµ

60 3.8

HUO POP eG

¶ POP ID]úi∩

¶ í

¶ fh

¶ O@Φ

¶ ohHWoXi

¶ Θís

QuPXv∩∩\sΘAKi∩Θ

íCziYqGΩs]wΘíCpGz∩

YqGAΘJlíM⌠í]ϕaí@

íúAC

∩°∩eΣ∩U\αϕAKi≤ POPeCpGznMúµA∩½]F²bzST

wznDS∩∩ PopípUAαo∩C∩n∩ßA÷@U∩ PopAYi≤eC

36. POP e

61Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

ziqo\α⌡µΣL\αG

¶ pGznMΣ[ POP ½≤A∩MΣπ

uPOP jMGv\αCp÷MΣ[ POP ½≤ΣLΩTA\63yPOP e → POP jMGzC

¶ pGznN POP [½≤íA∩[πu[

POPv\αCp÷N POP [½≤ΣLΩTA\yPOP e → [ POPzC

¶ pGznπB Rú POP A∩

πuv\αCpΣL÷Ω

TA\64yPOP e → zC

¶ pGznRúo POPA∩Rúo POPCtHYqPolicy Director ñRú POPC

POP e → [ POPu[ POPv\αi²zN POP [½≤í½≤CpGznN POP [½≤í½≤AbσrñΘJ½≤π⌠AMß÷@U[CQ¿AeWπ∩

w POP uPOP ev\αC

TVT ⁿGattachpop.gif

62 3.8

POP e → POP jMGuPOP jMGv\αiπ[∩w POP ½≤CπC@½≤úOAiπ½≤uⁿO@½

≤ev\αCp½≤íeΣL÷ΩTA

\44yⁿO@½≤ezC

TVT ⁿGpopfind.gif

37. [ POP

63Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

POP e → uv\αiπ POP C∩w POP úπbϕñAπ]AWM

Czi Rú POP C

TVT ⁿGpopextend.gif

38. POP jMG

64 3.8

¶ pGn s POP A∩sπu

v\αCp @ΣL÷

ΩTA\yPOP e → → zC

¶ pGnRúA∩znRúΣ∩

AMß÷@URúCQ¿Auv

\αñπ≤sϕC

POP e → → u v\αi²z s POP C

TVT ⁿGobspaceextendcreate.gif

39. POP

65Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

UCBJ sG

1. bWσrñΘJWC

2. bσrñΘJC

3. ΘJΩTßA∩ sCQ¿

AeWπuv\αAϕñ]CX

sC

POP → u POPv\αi²z s POPC

TVT ⁿGpopcreate.gif

40. POP

66 3.8

UCBJ s POPG

1. b POP ID σrñΘJ POP IDC

2. bíσrñΘJ POP íC

3. ∩Aϕfh∩]w POP fhGfhLBπHMTC

4. Uí\αϕ∩AϕO@ΦC

5. ∩ohHWoXi∩ií

C

6. QuPXv∩∩\sΘAKi∩Θ

íCziYqGΩs]wΘíCpGz∩

YqGAΘJlíM⌠í]ϕaí@

íúAC

7. pGznMúµA∩½]CbS∩

POP ípUAαo∩MúµC

41. POP

67Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

8. ΘJΩTßA∩ POP s POPCQ¿AeWπuPOP ev\α²z⌡µ POPz\αCp POP eΣL÷ΩTA\60yPOP ezC

GSO Ω@\αϕñ GSO ΩYlYGCX GSOB

GSOBCX GSO sH GSO sCo\αi⌡µU

C@GCX GSO ΩFπΩeF RúΩFCX GSO ΩsFπsΦΩseF RúΩsC

TVT ⁿGgsotasks.gif

GSO Ω → CX GSOuGSO ΩCXv\αiCX GSO ΩCπC@ΩúOAiπΩuGSO Ω

ev\αC

TVT ⁿGgsolist.gif

42. GSO Ω@

68 3.8

GSO ΩeuGSO Ωev\αiπ∩wΩ÷eCzi°ΩeA]iRúΩC

TVT ⁿGgsoprop.gif

43. GSO CX

69Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

HUOΩeG

¶ GSO ID]úi∩

¶ í]úi∩

pGznRúoΩA∩RúoΩCtHYq TivoliSecureWay Policy Director ñRúΩCQ¿AtHYπ≤suGSO ΩCXv\αC

GSO Ω → GSOuGSO Ω v\αi²z sΩC

TVT ⁿGgsocreate.gif

44. GSO Ωe

70 3.8

UCBJ sΩG

1. b GSO ID σrñΘJΩ IDC

2. bíσrñΘJΩíC

3. pGznMúµA∩½]CbS∩

ípUAαo∩MúµC

4. ΘJΩTßA∩ sΩCQ¿

AΩ ID HíπXCϕz∩o

AeWπuGSO Ωev\α²z⌡µΩz\αCpΩeΣL÷ΩTA\69yGSO ΩezC

GSO Ω → CX GSO suGSO ΩsCXv\αiCX GSO ΩsCπC@ΩsúOAiπΩs

uGSO Ωsev\αC

TVT ⁿGgsogrouplist.gif

45. GSO Ω

71Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

GSO ΩseuGSO Ωsev\αiπ∩wΩs÷eCzi°ΩseA°∩ΩseAH

RúΩsC

TVT ⁿGgsogroupprop.gif

46. GSO ΩsCX

72 3.8

HUOΩseG

¶ GSO s ID]úi∩

¶ í]úi∩

¶ GSO ¿

¶ i GSO

ziGSO ¿Mi GSOoΓMµAboΩsñsWúΩCUCBJAbosñsWúΩ

C

1. UCBJANΩsWosG

a. qi GSO Mµñ∩nsWΩC

b. ∩bY÷s (<<<)C

2. UCBJAqosúΩC

a. qGSO ¿Mµñ∩núΩC

b. ∩bY÷s (>>>)C

47. GSO Ωse

73Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

3. pGznMú∩A÷@U½]F²bzSTw

znDS∩∩ípUAαo∩C

4. ∩n∩ßA÷@U∩AYi≤eCQ¿A

eWπt≤seuGSO Ωsev\αC

pGnRúoΩA∩RúCtHYq Tivoli SecureWayPolicy Director ñRúΩCQ¿AtHYπ≤suGSO ΩCXv\αC

GSO Ω→ GSO suGSO Ωs v\αi²z sΩsC

TVT ⁿGgsogroupcreate.gif

UCBJ sΩsG

1. b GSO s ID σrñΘJΩs IDC

2. bíσrñΘJΩΩsC

3. UCBJANΩsWosG

48. GSO Ωs

74 3.8

a. qi GSO Mµñ∩nsWΩC

b. ∩bY÷s (<<<)C

4. UCBJAqosúΩC

a. qGSO ¿Mµñ∩núΩC

b. ∩bY÷s (>>>)C

5. pGznMúµA∩½]CbS∩

ípUAαo∩MúµC

6. ΘJΩTßA∩ sΩsCQ

¿AΩs ID HíπXCϕz∩oAeWπuGSO Ωsev\α²z⌡µΩz\αCpΩeΣL÷ΩTA\

72yGSO ΩsezC

75Tivoli SecureWay Policy Director Web Portal Manager zΓU

3.W

ebP

ortal

Man

ager

z

76 3.8

e⌠z

Tivoli SecureWay Policy Director zi Web Portal Managere⌠z\αiµUC@G e⌠⌠F s

FNsWΣL⌠FⁿwúP¼z

U⌠CAoe⌠zKiΣ¼A∩Σ

ºⁿw⌠ñ⌡µz\αlCe⌠zo

ºiM≤ Policy Director Ai¿⌠ÑhCboÑhíwñAC@ Policy Director uⁿΣ⌠⌠zW⌠zz]W⌠zo

DDN≤ßqAíCzΩWi⌡µ\

αA°ⁿwz¼wC

e⌠zPolicy Director z]p sec_masteri h°⌠Aⁿw@hz¼U°⌠C°⌠zi

b°⌠ñ sA]iN Policy Director sW°⌠C

ú÷\αHAPolicy Director zib°⌠h]l⌠ºU s⌠A iⁿwß⌠s⌠

z]⌠zCs⌠zSibΣ¡⌠ñ

sC

4

77Tivoli SecureWay Policy Director Web Portal Manager zΓU

4.e

z

°⌠ Policy Director z]°⌠Oⁿ⌠W⌠]⌠zv¡CPolicy Director zibv¡d≥AD z⌠N⌠AHí¼SϕDC

: ≥WA°⌠O@h⌠A°⌠hºU ⌠≤⌠h⌠C

HUO7949ñh½⌠z¼dGY@ PolicyDirector zi °⌠ A M BAioΓ⌠OⁿwzC°⌠ B ⌠zi s PBQCt@ Policy Director zib⌠ A M B ºU ⌠ C MDC Policy Director zKib⌠ D ºU ⌠ EAiⁿw⌠z EC⌠ E zSib⌠ E s XBYBZCA≤Y⌠z]iz⌠l⌠A⌠ D ⌠zM°⌠ B ⌠zúi⌠ E s]⌡µΣLz\αC

78 3.8

C@e⌠⌠]]A°⌠ñúiⁿww²wq

z¼CHUOUz¼HUⁿw¼zi

⌡µz\αG

¶ Policy Director zC Policy Director zO iv-admins¿CPolicy Director zi⌡µe⌠z\αC

¶ ⌠z. ⌠zi∩Σ⌠ñ⌡µz\αC⌠zibΣ¡⌠ñ s/zAiⁿw⌠ß⌠⌠z]ziH

O⌠@¼zA²úiHO⌠z¼C

¶ Ωz. Ωzv¡P⌠zv¡PA²ΩzúiⁿwΣLzC

49. e⌠z

79Tivoli SecureWay Policy Director Web Portal Manager zΓU

4.e

z

¶ z. zv¡MΩzv¡PA²zúi s⌠Czi∩eC

¶ Σz. ΣzΩtññΓúAAi°eB≤KXH∩

OKXHXC

e⌠zuπi⌡µC@z¼⌡µz\

αCznJAt÷z¼ú

z\αC

e⌠ñΓzWeb Portal Manager e⌠ztt@í≈hOñΓzCQnQ¿ Policy Director íp@A²wqwhε∩½≤sv¡ Awqi∩½≤⌡µ@CúLAh

b⌡µWqJx°A]Awhjbúñ¬

Ñ¿wqFhwqnßAµ¿td⌡

µF²OA¬Ñ¿½°OswDA¿÷

oOCÑMΩ@ DC]A÷MoΓs∩≤

πΘwqúΩⁿA²OAnoΓúP

[Iµ¼sTΩO@≤πD íCΘAwD

ϕh AiBMFíÑ]úOwD≥n

DFñΓ¼z@ij@wαOAií¼o

wDC

nAñΓzA²wqñΓoºCñΓO@

¿Swu@nD@Bd⌠¿CpGNo

wqP Tivoli SecureWay Policy Director sεMµ (ACL)¼@∩AñΓK¿@≈@h∩½≤M@hM

≤½≤svc¿MµCpG

¶ ½≤ 1G\iv 1

¶ ½≤ 2G\iv 2B3B4

¶ ½≤ 3G\iv 5

80 3.8

ñΓ²αCTivoli SecureWay Policy Director zb Policy Director iWxsññΓwqßAKiñΓCYñΓⁿwYñΓßAK

½≤ 1 \iv 1A½≤ 2 \iv 2B3B4AH½≤ 3 \iv 5Co½≤svi²so½≤Ai⌡µñΓwqu@d⌠CpAgwqßAyaccountant rolezoñΓKi]tHUΓ∩½≤M\ivG

¶ payroll check object: create/modify/delete

¶ reimbursement request object: approve

ñΓⁿwYpíuñΓßAuKi

B∩RúΩπvnDAi⌡µpv

⌡µu@C

zπHUT@¼⌡µαOAαQ¿ñ

Γz@G:

¶ ñΓ

¶ ñΓⁿw

¶ ñΓ

ñΓwqñΓAñΓ@≈@h∩ TivoliSecureWay Policy Director ½≤MiM≤½≤\ivc¿MµCtb Web Portal Manager ñ YñΓßAK @ Tivoli SecureWay Policy Director sNϕñΓCAt]bz½≤íñ @∩s½≤CñΓ½

≤/\ivt∩ΩThxsbs½≤÷ñCuTivoli SecureWay Policy Director ziH ñΓC

ñΓⁿwKOⁿwΩtwgnñΓCⁿwΩt

YñΓANb≤²ñΓñwq½≤svCo

\αiε\iv½≤÷Y@@Au@tⁿA

]b≤ñΓⁿw@M½≤/svz@OiµCb

81Tivoli SecureWay Policy Director Web Portal Manager zΓU

4.e

z

Web Portal Manager ñⁿwYΩtYñΓßAKi¿NϕñΓss¿C⌠zBΩzHY

⌠zAúibΣ⌠ñⁿwΩtYñΓC

ñΓßAsnñΓKiB@CnYñΓⁿwY

ΩtñΓßA²ñΓAα²ñ

Γñwq½≤svCb Web Portal Manager ñYñΓßAtNϕñΓºs ACL AHñΓñwqsvAúsWñΓñwqC@½≤ ACLCⁿwΩtYñΓAwsWsñAH@wn²

ñΓAα²½≤svCu Tivoli SecureWayPolicy Director ziHñΓC

ⁿwñΓ⌠ßAñΓK@A¿@iⁿe⌠

MzΩΘCnñΓßAKiNñΓⁿw°⌠C⌠

zhSiN⌠⌠≤ñΓⁿw⌠≤l⌠CⁿwY

ñΓY@l⌠ßAl⌠zSiⁿw⌠≤l⌠

ΩtñΓCⁿwñΓl⌠oiD½⌡

µAiúRñΓAϕCu Policy Director zα⌡µ°⌠ñΓⁿw@C⌠ziⁿwñΓ

Ll⌠C

e⌠z@\αϕñe⌠zY¡lYGCX°⌠B

°⌠BñΓBCXñΓH⌠jMCϕzH

t@z¼¡≈nJA\αϕhuΓl

YGCX⌠M⌠jMC

TVT ⁿGdatasks.gif

82 3.8

zi⌡µhz\αA]A∩eAH Rú

Tivoli SecureWay Policy Director ⌠BñΓHC÷≤o\αAHUU≤íC

e⌠z → ⌠MµH Policy Director zHº⌠≤z¼¡≈nJßAKio\αCue⌠⌠Mµv\αiCXC@

ⁿwz Policy Director ⌠CπC@⌠úOAiπ⌠ue⌠⌠ev\αCpGΣ

ú⌠AeWπΣú⌠TºCpGΣF⌠A²

LkQCXΣ⌠AeW@πTºC

TVT ⁿG²nX]b\αϕñ∩unXvAMßAH Policy Director zuHvz¡≈½snJAαoeCdomain.gif

50. e⌠z@

83Tivoli SecureWay Policy Director Web Portal Manager zΓU

4.e

z

e⌠z → CX°⌠H Policy Director z¡≈nJßAKio\αCue⌠°⌠v\αiCX Policy Director °⌠CπC@°⌠úOAiπ°⌠

ue⌠⌠ev\αCpGΣú°⌠AeW

πΣú⌠TºCpGΣF°⌠A²LkQCX

Σ°⌠AeW@πTºC

TVT ⁿG²nX]b\αϕñ∩unXvAMßAH Policy Director z¡≈½snJAαoeCPolicy Director zieΣß≥eCdaenterdomain.gif

51. ⌠Mµ

84 3.8

e⌠⌠eue⌠⌠ev\αiπ∩w⌠÷eCz

i°⌠eC

TVT ⁿGdaprops.gif

52. e⌠°⌠

85Tivoli SecureWay Policy Director Web Portal Manager zΓU

4.e

z

HUOe⌠⌠e:

¶ e⌠]úi∩

¶ nJ]úi∩

¶ í]i sec_master)

pGzn∩íAbσrµñΘJsíAMß∩

∩CnJµiπzeH≤z¼¡≈nJtC

ziqo\α⌡µΣL\αG

¶ pGznπ⌠MµA∩CX to πu⌠Mµv\αCpπ@ΣL

÷ΩTA\90ye⌠⌠e → CXzC

¶ pGzn ⌠A∩⌠πu

e⌠v\αCpe⌠ @ΣL

÷ΩTA\95ye⌠⌠e → ⌠ezC

53. e⌠⌠e

86 3.8

¶ pGznπl⌠MµA∩CXl⌠πul⌠

Mµv\αCpl⌠π@ΣL÷ΩTA

\96ye⌠⌠e → CXl⌠zC

¶ pGzn e⌠l⌠A∩l⌠πu

e⌠⌠v\αCpl⌠ @ΣL÷Ω

TA\96ye⌠⌠e → l⌠zC

¶ pGznπⁿw⌠ñΓA∩ñΓⁿwπ

uⁿw⌠ñΓv\αCpñΓⁿw@Σ

L÷ΩTA\97ye⌠⌠e → ñΓⁿwzC

¶ pGznπBsWúⁿw⌠⌠zA∩

⌠zπu⌠zv\αCp⌠

zΣL÷ΩTA\101ye⌠⌠e → ⌠zzC

¶ pGznπBsWúⁿw⌠ΩzA∩

ΩzπuΩzv\αCpΩ

zΣL÷ΩTA\102ye⌠⌠e → ΩzzC

¶ pGznπBsWúⁿw⌠zA∩

zπuzv\αCpzΣL÷Ω

TA\103ye⌠⌠e → zzC

¶ pGznπBsWúⁿw⌠ΣzA∩

ΣzπuΣzv\αCpΣ

zΣL÷ΩTA\104ye⌠⌠e → ΣzzC

DC@z¼úiHWCX\αCϕµ 1 JU¼ziis\αCΦñ X ϕµⁿwz¼isC

87Tivoli SecureWay Policy Director Web Portal Manager zΓU

4.e

z

ϕ 1. úPz¼is

P o l i c yDirector

⌠ Ω z Σ

CX X X X X X

X X X

CXl⌠ X X X X X

l⌠ X

ñΓⁿw X X X X X

⌠z X X X X X

Ωz X X X X X

z X X X X X

Σz X X X X X

ϕµ 2 JU¼zis\αCΦñ X ϕµⁿwz¼is\αC

ϕ 2. úPz¼is\α

\α P o l i c yDirector

⌠ Ω z Σ

°í X X X X X

∩í *

]\

X

CX X X X X X

sW /ú

X

X X X

CXl⌠ X X X X X

l⌠ X

88 3.8

ϕ 2. úPz¼is\α (≥)

\α P o l i c yDirector

⌠ Ω z Σ

/CXñ

Γ

X

/MP⌠

ñΓ

X

sW /ú⌠

ñΓ

X

°ⁿw⌠

ñΓ

X X X X

ⁿwñΓl

X X

sW /úΩ

tYñΓ

X X X X

°⌠ñQ

ⁿwΩtYñ

Γ

X

CX⌠z

X X X X X

sW /ú⌠

z *

]\

X

CXΩz

X X X X X

sW /úΩ

z

X X

CXz X X X X X

sW /ú

z

X X

CXΣz

X X X X X

89Tivoli SecureWay Policy Director Web Portal Manager zΓU

4.e

z

ϕ 2. úPz¼is\α (≥)

\α P o l i c yDirector

⌠ Ω z Σ

sW /úΣ

z

X X

: zLk∩Σ¡⌠íM⌠zoΓ

eCu Policy Director z⌠ºW⌠⌠zα≤oeCΘJsíAMß÷@U∩AYi

∩íeCu Tivoli SecureWay Policy Director zα ñΓC

e⌠⌠e → CXu⌠Mµv\αiCXBsWú∩w⌠ñ

Cu Policy Director zαo\αC⌠zBΩzBzHΣzuαd

⌠MµC

pGnNsW⌠Ab ID σrµñΘJ IDAMß÷@UsWCu⌠Mµv\αHY½s

πzAsW]CbesUΦCπ

C@⌠úOAiπue⌠

ev\αC

TVT ⁿGdalistuser.gif

90 3.8

e⌠úCbeíµUΦCpGn

ú∩w⌠A∩Σ∩AMß÷@

UúCu⌠Mµv\αHY½sπzABúAC

XúC

e⌠⌠e → CX → e⌠eue⌠ev\αiπ∩w÷

eCzizz¼∩eRúC

⌠≤i∩eúPπisΦµ∩C

TVT ⁿGdauserprop.gif

54. ⌠Mµ

91Tivoli SecureWay Policy Director Web Portal Manager zΓU

4.e

z

: UCv¡uA≤@δ — Lzv¡CΩ

zBzHΣzÑz¼e—]AKX—M≤oz¼ ΦíCpGY²ObeY⌠ñ zA⌠ΣW⌠

⌠zKi≤eCpGY

²úObe⌠ñ AOHsWΦí¿⌠

zA⌠⌠zhúi≤

eCPolicy Director zi≤⌠≤ze]úOH≤Φí zú@C

HUOe⌠e:

¶ ID]úi∩

¶ KX]z¼úi∩

¶ τKX]z¼úi∩

¶ í]Policy Director zB⌠zBΩzHzÑz¼úi∩

¶ Wr]úi∩

55. e⌠e

92 3.8

¶ m≤]úi∩

¶ ObßH]Policy Director zB⌠zBΩzHzÑúi∩

¶ OKXH]z¼úi∩

¶ O GSO ]Policy Director zB⌠zBΩzHzÑúi∩

¶ OHU⌠¿GMµ]úi∩

∩°∩∩A∩eΣσrµAYi

≤eCpGznNoµmlA∩½

]F²bzTwznDS∩∩íp

UAαo∩C∩n∩ßA÷@U∩AYi

≤eCue⌠ev\αñHYπ≤s

eC

pGznqYC@⌠H Tivoli SecureWayPolicy Director n²ñúA÷@URúo

C

pGznπQⁿwΩtñΓA∩ñΓⁿwπ

uñΓⁿwv\αC

e⌠⌠e → CX → e⌠e → ñΓⁿw

: bw²iípUApGY⌠\⌠≤z¼iH@δ¡≈XA≥A⌠⌠zBΩ

zzKiNsW⌠ñΓAN

q⌠ñΓñúC

uñΓⁿwv\αi²zNsWñΓAN

qñΓñúCe⌠ Policy Director zB⌠zBΩzzÑúiNsWñΓANq

ñΓñúCΣzhi°e⌠QⁿwΩt

ñΓCo@HA]b≤zⁿwO

93Tivoli SecureWay Policy Director Web Portal Manager zΓU

4.e

z

ΩtúPñΓCpGznMΣYOAⁿw

ΩtúPñΓA\100ye⌠⌠e → ñΓⁿw → ⁿwΩtYñΓzC

TVT ⁿGdauserra.gif

UCBJNsWúPñΓANqú

PñΓñúG

1. pGnNsWYñΓAbiñΓMµñ∩

ñΓAMßA∩bY (<<<)C

2. pGnqYñΓñúAqeñΓMµñ∩

ñΓAMßA∩bY (>>>)C

3. pGnMúz∩w∩A∩½]C²bS∩

∩ípUAαMú∩w∩C

4. ∩n∩ßA÷@U∩Co½sπzAMµ]H

Y≤sC

56. e⌠eñΓⁿw

94 3.8

e⌠⌠e → ⌠eu ⌠v\αi²zbe⌠ñ s

szCPolicy Director ze⌠⌠zMΩzúio\αC≤i ≤

z¼Ah°z¼wCpz @

ΣL÷ΩTA\88ϕ2C

o\απσrµM∩≥ue⌠ev

\απ@Cpe⌠eΣL÷ΩTA

\91ye⌠⌠e → CX → e⌠ezC

TVT ⁿGdausercreate.gif

UCBJ sG

1. ΘJseC¼B IDBKXBτK

XBWrHm≤ÑúOnµC

2. pGznMúµA∩½]C²bS∩

ípUAαMúµC

57. ⌠

95Tivoli SecureWay Policy Director Web Portal Manager zΓU

4.e

z

3. ΘJΩTßA∩ sCpG

LkQ¿AeWπTºAúT]

H≤CpGQ¿AeWπTºAⁿX

wT¿C

e⌠⌠e → CXl⌠ul⌠Mµv\αiCX∩w⌠ñl⌠C

πC@l⌠úOAiπl⌠ue⌠

⌠ev\αC

TVT ⁿGdasublist.gif

e⌠⌠e → l⌠u e⌠l⌠v\αi²z sl⌠Cu PolicyDirector zαo\αC

TVT ⁿGdasubcreate.gif

58. l⌠Mµ

96 3.8

UCBJ sl⌠G

1. b⌠WσrñΘJ⌠WCoOnµC

2. bíσrñΘJ⌠íC

3. ΘJΩTßA∩ sl⌠CeWπ

ue⌠⌠ev\α²z⌡µ⌠z\αCp

⌠eΣL÷ΩTA\85ye⌠⌠ezC

e⌠⌠e → ñΓⁿwuⁿw⌠ñΓv\αiπⁿwe⌠ñ

ΓAi²zNñΓsWe⌠ANñΓqe⌠

ñúCPolicy Director ze⌠ºW⌠⌠zAúiNñΓsWe⌠CtAPolicy Director ziqe⌠ñúñΓCe⌠⌠zBΩ

zBzΣzÑúi°ⁿwe⌠ñΓC

TVT ⁿGdara.gif

59. l⌠

97Tivoli SecureWay Policy Director Web Portal Manager zΓU

4.e

z

ⁿwe⌠ñΓúπboñCπC

@ñΓúOAiπe⌠uⁿwΩtY

ñΓv\αCp÷ⁿwΩtYñΓΣLΩTA

\100ye⌠⌠e → ñΓⁿw → ⁿwΩtYñΓzC

UCBJqe⌠ñúñΓG

1. ∩ñΓΣ∩C

2. pGznMú∩A∩½]F²bzSTwz

nDS∩RúípUAαo∩C

3. ∩RúAHKq⌠ñú∩wñΓC∩wñΓHYqe

⌠HQⁿwo∩wñΓl⌠ñúCAuⁿ

w⌠ñΓv\α½sπzA∩wñΓ]qMµñ

úC

pGnⁿwsñΓe⌠A∩ⁿwiñΓ⌠

πuⁿwñΓ⌠v\αC²uαⁿwwⁿwe⌠

ºW⌠ñΓC

60. e⌠⌠ñΓⁿw

98 3.8

e⌠⌠e → ñΓⁿw → ⁿwñΓ⌠uⁿwñΓ⌠v\αi²zⁿwsñΓe⌠C

Policy Director ze⌠ºW⌠⌠zAúiⁿwñΓe⌠C

TVT ⁿGdaassignrole.gif

eWπe⌠ºⁿwñΓMµC²uCXⁿw

e⌠ºW⌠ñΓCUCBJNΣñ@ñΓⁿw

o⌠G

1. ∩ⁿwñΓΣ∩C

2. pGznMú∩A∩½]F²bzSTwz

nDS∩sWípUAαo∩C

3. ∩sWANñΓⁿwo⌠C

uⁿw⌠ñΓv\αHYπ≤sⁿwñΓMµC

eWπHUTºG

61. ⁿwñΓ⌠

99Tivoli SecureWay Policy Director Web Portal Manager zΓU

4.e

z

UCñΓwⁿw⌠CoñΓßAαñΓ

÷MvC

ohTºⁿXGⁿwñΓCpñΓ@ΣL

÷ΩTA\109yñΓe → ⌠ñΓzC

e⌠⌠e → ñΓⁿw → ⁿwΩtYñΓ

: bw²iípUApGY⌠\⌠≤z¼iH@δ¡≈XA≥A⌠⌠zBΩ

zzKiNsW⌠ñΓAN

q⌠ñΓñúC

∩ñΓπuⁿwΩtYñΓv\αi²z

ⁿwΩtYñΓAqYñΓñúCPolicy DirectorzB⌠zBΩze⌠zÑúiⁿ

wΩtYñΓAqYñΓñúCΣzh

i°QⁿwΩte⌠ºñΓCo@HñΓ

A]b≤zⁿwúPΩtP@OñΓC

pGznMΣOAⁿwΩtúPñΓA

\93ye⌠⌠e → CX → e⌠e → ñΓⁿwzC

TVT ⁿGdaassignusers.gif

100 3.8

UCBJⁿwúPΩtoñΓAqoñΓ

ñúúPG

1. pGznπuⁿwΩtYñΓv\αA∩znsWΩtñΓC

2. pGnsWYΩtYñΓAbiMµñ∩

AMßA∩bY (<<<)C

3. pGnqYñΓñúAqeMµñ∩

AMßA∩bY (>>>)C

4. pGnMúz∩w∩A∩½]C²bS∩

∩ípUAαMú∩w∩C

5. ∩n∩ßA÷@U∩Co½sπzAMµ]H

Y≤sC

e⌠⌠e → ⌠zu⌠zv\αiCX∩w⌠ñ⌠z

CPolicy Director ze⌠ºW⌠⌠zúio\αCuαsWs⌠zCpG

62. ⁿwΩtYñΓ

101Tivoli SecureWay Policy Director Web Portal Manager zΓU

4.e

z

nN⌠zsW⌠Ab ID σrµñΘJ IDAMß÷@UsWCu⌠zv\αHY½sπ

zAsW⌠z]Cbe⌠zsUΦC

πC@⌠zúOAiπ⌠z

ue⌠ev\αCpGnú∩w⌠⌠

zA∩⌠zΣ∩AMß÷@UúCu⌠

zv\αHY½sπzABúACXú⌠z

C

TVT ⁿGdadomainadmin.gif

e⌠⌠e → ΩzuΩzv\αiCX∩w⌠ñΩz

CPolicy Director ze⌠⌠zúio\αCuαsWsΩzCpGnNΩ

zsW⌠Ab ID σrµñΘJ IDAMß÷@UsWCuΩzv\αHY½sπzAsW

Ωz]CbeΩzsUΦCπ

63. ⌠z

102 3.8

C@ΩzúOAiπΩzue⌠

ev\αCpGnú∩w⌠ΩzA

∩ΩzΣ∩AMß÷@UúCuΩz

v\αHY½sπzABúACXúΩzC

TVT ⁿGdasenioradmin.gif

e⌠⌠e → zuzv\αiCX∩w⌠ñzC

Policy Director ze⌠⌠zúio\αC uαsWszCpGnNzsW

⌠Ab ID σrµñΘJ IDAMß÷@UsWCuzv\αHY½sπzAsWz]C

bezsUΦCπC@zúOA

iπzue⌠ev\αCpGn

ú∩w⌠zA∩zΣ∩AMß÷@U

úCuzv\αHY½sπzABúACXú

zC

64. Ωz

103Tivoli SecureWay Policy Director Web Portal Manager zΓU

4.e

z

TVT ⁿGdaadmin.gif

e⌠⌠e → ΣzuΣzv\αiCX∩w⌠ñΣz

CPolicy Director ze⌠⌠zúio\αC uαsWsΣzCpGnNΣ

zsW⌠Ab ID σrµñΘJ IDAMß÷@UsWCuΣzv\αHY½sπzAsW

Σz]CbeΣzsUΦC π

C@ΣzúOAiπΣzue⌠

ev\αCpGnú∩w⌠zA∩

ΣzΣ∩AMß÷@UúCuΣzv\

αHY½sπzABúACXúΣzC

TVT ⁿGdasupadmin.gif

65. z

104 3.8

e⌠z → °⌠u °⌠v\αi²z s°⌠Cu TivoliSecureWay Policy Director zαo\αC

TVT ⁿGdacreate.gif

66. Σz

105Tivoli SecureWay Policy Director Web Portal Manager zΓU

4.e

z

UCBJ s°⌠G

1. b⌠WσrñΘJ⌠WCoOnµC

2. bíσrñΘJ⌠íC

3. b LDAP rσrµñΘJ°⌠²sqH

≤w (LDAP) rCoOnµC

4. ΘJΩTßA∩ s°⌠CeW

πue⌠⌠ev\α²z⌡µ⌠z\αCp

⌠eΣL÷ΩTA\85ye⌠⌠ezC

e⌠z → ñΓu ñΓv\αi²z sñΓCu Tivoli SecureWayPolicy Director zαo\αC

TVT ⁿGdarolecreate.gif

67. °⌠

106 3.8

UCBJ sñΓG

1. bñΓWσrñΘJñΓWCoOnµC

2. bíσrñΘJñΓíC

3. bLDAP rσrµñΘJñΓ LDAP rCoOnµC

4. ΘJñΓ½≤/svt∩G

a. b½≤M\ivoΓσrµñΘJñΓ½≤/svt∩C

b. ∩sWsWñΓ½≤/svt∩CñΓ½≤/svt∩HY½≤/\ivMµñCzi½BJ a MbANΣLt∩sWMµñC

: t∩πµípUG½≤ - \ivC

c. pGnqñΓñúYt∩Aq½≤/\ivMµñ∩

t∩AMßA∩ú∩Ct∩HYqMµñ

úCzi½BJ cAqMµñúΣLt∩C

68. ñΓ

107Tivoli SecureWay Policy Director Web Portal Manager zΓU

4.e

z

5. ΘJΩTßA∩ sñΓCeWπ

uñΓev\α²z⌡µñΓz\αCpñΓ

eΣL÷ΩTA\yñΓezC

e⌠z → CXñΓH Tivoli SecureWay Policy Director z¡≈nJßAKio\αCuñΓMµv\αiCXñΓC

πC@ñΓúOAiπ⌠uñΓ

ev\αC pGΣúñΓAeWπΣúñΓT

ºCpGΣFñΓA²LkQCXΣñΓAe

W@πTºC

TVT ⁿGdalistroles.gif

ñΓeuñΓev\αiπ∩wñΓ÷eCzi

°∩ñΓeC

69. ñΓMµ

108 3.8

TVT ⁿGdaroleprops.gif

HUOñΓe:

¶ ñΓW]úi∩

¶ í

¶ ½≤/\iv

pGn∩ñΓeA²≤eAMß∩∩CpñΓ

e≤ΦíΣL÷ΩTA\106ye⌠z → ñΓzCpGóAeWπTºCpG

Q¿A½sπzAπ≤seCpGnSw

⌠ñΓA∩⌠ñΓπu⌠ñΓv

\αCpGnMPSw⌠ñΓA∩MP⌠ñΓ

πuMP⌠ñΓv\αC

ñΓe → ⌠ñΓu⌠ñΓv\αi²zSw⌠eñΓC

u Tivoli SecureWay Policy Director zαo\αCñπñΓWC

70. ñΓe

109Tivoli SecureWay Policy Director Web Portal Manager zΓU

4.e

z

TVT ⁿGdaactivaterole.gif

UCBJSw⌠ñΓG

1. b⌠WσrµñΘJ⌠π⌠C

2. ∩MCo½sπzA⌠W]MúC

ñΓe → MP⌠ñΓuMP⌠ñΓv\αi²zMPSw⌠eñΓC

u Tivoli SecureWay Policy Director zαo\αCñπñΓWC

TVT ⁿGdadeactivaterole.gif

71. ⌠ñΓ

110 3.8

UCBJMPSw⌠ñΓG

1. b⌠WσrµñΘJ⌠π⌠C

2. ∩MCo½sπzA⌠W]MúC

e⌠⌠ → ⌠jMu⌠jMv\αú@í ID jM\αAiMΣ Tivoli SecureWay Policy Director Cz¼úijM\αC

TVT ⁿGdausersearch.gif

72. MP⌠ñΓ

111Tivoli SecureWay Policy Director Web Portal Manager zΓU

4.e

z

UCBJjMG

1. bWLoµñΘJjMhCziUr (*) jMíXC

: pGzQπYSw IDAΘJπ IDFΘJßAeWπeADGMµC

2. pGnjMe⌠ºl⌠ñA∩jMl⌠

C

3. ΘJznbⁿJpjµñπGFw]O

100CΘJⁿJpjVjA íVCC

4. ∩jMCjM@HYliµAG]πbHUY

UΦGUCXjMhGC

GMµπC@ ID úO@iπºue⌠ev\αCpe⌠eΣ

L÷ΩTA\91ye⌠⌠e → CX →e⌠ezC

73. ⌠jM

112 3.8

HñσrAσrASϕ

ºCC

eTfl⌠ 77, 96

ef

Web Portal Manager 23

e

Σz 104

e⌠ 86

CXl⌠ 96

CX 90

Wr 92

ñΓ 108, 109, 110

ñΓⁿw 93, 97, 99

25, 29

ID 92

ⁿw 100

OHU¿G 92

e⌠ 91

e⌠⌠ 85

m≤ 92

50

½≤í 43

l⌠ 96

O GSO 92

e (≥)

OKXH 92

ObßH 92

n≤v¡ 92

½] 93

∩ 93

KX 92

\iv 51

s 38

s ID 39

í 39

LDAP CN 39

LDAP DN 39

Ωz 102

z 103

⌠ 95

⌠nJ 86

⌠z 101

⌠í 86

í 92

s ACL e 53

τKX 92

ACL 48

ACL ID 49, 50

ACL 49, 51

ACL í 49

domain sec_master 86

í

tm 20

IBM JDK 1.2.2 18

Java Server Pages 2

113Tivoli SecureWay Policy Director Web Portal Manager zΓU

ΓU

viii

q viii

uW viii

Θx

pdwpm.log 20

e¡fDx

Java 1

WebSphere z 21

D≈W 22

X

viii

q viii

uW viii

\αϕ 23

\α 24

²W, ϕk xii

e f°⌠ 78

105

WLo 28, 112

h½⌠ 78

í≤ 79

d 78

sεMµ, \ ACL 47

w

wsu 26

h 80

≥nD 14

uw Socket hv(SSL) 3

Σ 14

wnD

WebSphere 13

w

Σs² 6

nΘ 6

wnD 14

wBJ 14

qw 13, 14

7

7

°A¡x 6

σ¼w 13, 14

≥nD 5

ú 21

W 5, 6

úw 21

yÑ∩ 19

IBM WebSphere Application Server 6

5, 13

Fixpack 4 5, 17

Script 7

Tivoli Secure Way Policy Director 6

⌡µ⌠ 5

Tivoli Secure Way Policy Director Runtime

Environment M Management Server 13

Tivolli Secure Way Policy Director

z°A 5

Web Portal Manager 5, 19

Script

w 7

eCf°A

Σ¡x 6

tm, httpd.conf

tm 14

114 3.8

°A (≥)

w] 22

IBM HTTP 2

IBM HTTP Server 1.3.12 18

IBM WebSphere 18

Web 2

@

CX°⌠ 82

CXñΓ 82

CX⌠ 82

ñΓ 80

ñΓⁿw 81

ñΓz 81

27

ⁿO@½≤í 43

e⌠z 82

°⌠ 82

ñΓ 81, 82

ñΓ 81, 82

s@

s 36

⌠jM 82

¼ 81

32

GSO 32

LDAP 32

N 2

ñΓ

e 108, 109, 110

CXñΓ 108

ñΓⁿw 81

ⁿw 81

e⌠ 80

wq 80

½≤M\iv 107

½≤/\iv 107

106

ñΓ 81

ñΓ (≥)

ⁿw 93, 97

ⁿwΩtYñΓ 100

ⁿw⌠ 98, 99

∩ 109

t∩ 107

109, 110

ñΓ 81, 82

\iv 80

ñΓz 1

eKf 28, 96

e 25, 29

GSO ID 34

Σz 104

CXe⌠⌠ 90

WLo 28

@ 27

e⌠ 1, 80

e⌠e 91

27

⌠ 95

ⁿñΓⁿw 93

∩e 93

jM 27, 28

jMe 29

Ωz 102

z 103

z, Policy Director 79

z, sec_master 77, 86

z, Σ 80

z, Ω 79

z, z 80

z, ⌠ 79

⌠z 101

115Tivoli SecureWay Policy Director Web Portal Manager zΓU

(≥)

O 3

ID 28

e

Wr 30

ID 30

m≤ 30

OKX 31

Obß 30

OGSO 31

KX 30

s¿Ωµ 31

í 30

τKX 30

GSO 33

LDAP DN 30

e⌠

z 105, 106

z@ 82

z, CXñΓ 108

⌠e 85

⌠Mµ 83

e⌠ñΓ

z 80

e⌠ 1

z 77

e⌠z

CX°⌠ 84

z 77

e⌠z, í≤ 79

½≤ ID 45

½≤í

e 43

ⁿO@½≤ ID 45

s² 43

ϕk

rΘ xii

⌠W xii

⌠ xii

[

ACL 45

POP 45

eEfßΣñ xi

l⌠ 96

°⌠ 105

ñΓ 81, 106

27

s 41

⌠ 95

ACL 51

GSO s 33

GSO 33

ⁿw

ñΓG⌠ 98

íΘx 18

n≤

nΘ 6

qX x

½]

e 32

\α 24

\αϕ 23

eQf∩

e 109

32

e 32

s 31

116 3.8

∩ (≥)

z 90

GSO s 33

GSO 33

IBM HTTP Server 13

y

viii

q viii

uW viii

tm 2

í 20

IBM WebSphere Application Server

5, 13

Fixpack 4 5, 17

pdwpm.log 20

Tivoli Secure Way Policy Director

z°A 5

Web Portal Manager 5, 19

tm Tivoli Secure Way Policy Director

⌡µ⌠ 5

tm Tivoli Secure Way Policy Director

Runtime Environment M Management

Server 13

tm

IBM HTTP Server 13

eQ@f@÷s 25

w] 13

LDAP 13

≥nD 5

°AOΘ 5

nΘ 5

w 5

wΘ 5

≥nD (≥)

WebSphere 5

⌡µ⌠

w 6

KX

nJ 3

° 80

vX 19

ñΓ 82

Web Portal Manager 26

ú

Σz 104

Gq⌠ 90

s 31

Ωz 102

z 103

⌠z 101

Web Portal Manager 21

\iv

e 51

ñΓ 80

ACL 47

nΘn≤ 6

eQGfnJ 26, 27

KX 3

z¼ 86

nX 26, 27

W⌠ 78

∩z 90

Ñh 26

117Tivoli SecureWay Policy Director Web Portal Manager zΓU

eQTfjM

27, 28

ID 29

s 36

ⁿJpj 28, 112

sW

Σz 104

G⌠ 90

s 31

Ωz 102

z 103

⌠z 101

º[

Web Portal Manager

23

s

e 38

41

jM 36

úw

Web Portal Manager 21

Ω

z 102

⌠W, ϕk xii

ⁿJpj 28, 112

Lo

W 112

qll≤p x

w]

°A 22

servlet 22

w]

½]e 93

eQf° 21

w 21

°A¼A 21

ßΣñ 22

s² 6

IBM HTTP Server 22

WebSphere 21

uWebSphere zDxv 21

z

°⌠ 78

CX°⌠ 84

h½⌠ 78

ñΓ 1, 80

e⌠ñΓ 80

e⌠ 77

W⌠ 78

⌠Mµ 83

API 3

Web Portal Manager 23

zDx 1

z°A

w 6

z

Σ 80

\α 88

°⌠ 78

h½⌠ 78

@ 81

∩z⌠ 90

Mv 87

nJ¼ 86

W⌠ 78

Ω 79

w²wq 79

∩\αsv¡ 88

∩sv¡ 87

z 80

⌠ 79

118 3.8

z (≥)

¼ 79

Policy Director 79

sec_master 77, 86

l⌠, í≤ 77

e 85, 86

e, l⌠ 96

e, ñΓⁿw 97, 99

e, ⁿw 100

e, l⌠ 96

e, z 103

Σz 104

° 78

CX° 84

h½ 78

e⌠ 91

e⌠, CX 90

e⌠, ñΓ 93

95

ñΓ 109, 110

MµAe⌠z 83

W⌠ 78

z 79, 101

∩ 19

ñ 14

eQ¡fsnJ, \ GSO 33

uWX x

s

ACL e 53

eQ fΘJµ 25

eQCf

Java Server Pages 3

pdwpm.log 20

⌠, ϕk xii

eQKfs²

Web 2

eQEf÷≤XNú x

eGQ@f

50

eGQGfO 3

119Tivoli SecureWay Policy Director Web Portal Manager zΓU

eGQTf, ϕk - A≤ xii

AACL 47

e 48

CX ACL 48

50

[ 45

\iví 47

49

e 51

í 49

se 53

ID 49, 50

ACL \iv 51

API

z 3

Java wrapper ñí 3

Eezinstall_pdwpm.bat 7

GGSO

wq 33

29

ID 34

GSO s 33

GSO 33

Hhttpd.conf 14

IIBM Developer Toolkit 18

IBM HTTP Server 2

∩tm 13

tm 14

° 22

IBM HTTP Server 1.3.12 18

IBM JDK 1.2.2 18

IBM WebSphere

Application Server

13

IBM WebSphere Application Server 18

w 6

5, 13

wnD 13

qw 13

σ¼w 13

Fixpack 4 7, 18

Fixpack4 18

install.bat 18

LDAP °A 13

PTF4 18

SSL Σ 14

IBM WebSphere Application Server

setup.exe 15

ID

28

ACL 49, 50

install.bat 18

120 3.8

JJava

Dx 1

Java Server Pages 2

2

3

JSP, \ Java Server Pages 2

LLDAP

≡ 13

LDAP r

ñΓ

LDAP r 107

log

activity 18

Ppdadmin

servlet 22

pdwpm Θx 20

pdwpm.arm 14

Policy Director

z 79

POP

[ 45

PTF4 ² 18

SScript

ezinstall_pdwpm.bat 7

sec_master 77, 86

servlet

w] 22

pdadmin 22

setup.exe 15

SSL, \uw Socket hv(SSL) 3

TTivoli Secure Way Policy Director

w

⌡µ⌠ 6

z°A 6

⌡µ⌠ 5

z°A 5

Tivoli Secure Way Policy Director Runtime

Environment M Management Server 13

Tivoli ßΣñ xi

WWeb

°A 2

ñ 14

s² 2

Web Portal Manager 19

≤ 2

wh 80

wsu 26

w 5

N 2

@ 27

tm 2, 5

26

nJ 26, 27

nX 26, 27

Ñh 26

121Tivoli SecureWay Policy Director Web Portal Manager zΓU

Web Portal Manager (≥)

º[ 23

z 23

z 23

1

WebSphere

≡ 13

wΘD 5

IBM HTTP Server 2

uWebSphere zv

Dx 21

uWebSphere zDxv

21

YΦíiµ° 21

uWebSphere z⌠v 22

Windows

Σ¡x 6

wrapper ñí

Java API 3

122 3.8

Printed in Australia