Search icon CANCEL
Subscription
0
Cart icon
Your Cart (0 item)
Close icon
You have no products in your basket yet
Arrow left icon
Explore Products
Best Sellers
New Releases
Books
Videos
Audiobooks
Learning Hub
Conferences
Free Learning
Arrow right icon
Arrow up icon
GO TO TOP
IBM WebSphere Application Server v7.0 Security

You're reading from   IBM WebSphere Application Server v7.0 Security For IBM WebSphere users, this is the complete guide to securing your applications with Java EE and JAAS security standards. From a far-ranging overview to the fundamentals of data encryption, all the essentials are here.

Arrow left icon
Product type Paperback
Published in Feb 2011
Publisher Packt
ISBN-13 9781849681483
Length 312 pages
Edition 1st Edition
Concepts
Arrow right icon
Author (1):
Arrow left icon
Omar P Siliceo (USD) Omar P Siliceo (USD)
Author Profile Icon Omar P Siliceo (USD)
Omar P Siliceo (USD)
Arrow right icon
View More author details
Toc

Table of Contents (17) Chapters Close

IBM WebSphere Application Server v7.0 Security
Credits
About the Author
About the Reviewers
www.PacktPub.com
Preface
1. A Threefold View of WebSphere Application Server Security 2. Securing the Administrative Interface FREE CHAPTER 3. Configuring User Authentication and Access 4. Front-End Communication Security 5. Securing Web Applications 6. Securing Enterprise Java Beans Applications 7. Securing Back-end Communication 8. Secure Enterprise Infrastructure Architectures 9. WebSphere Default Installation Hardening 10. Platform Hardening 11. Security Tuning and Troubleshooting

Fine-tuning authorization at the WAS level


The final major topic of this chapter is the trust association interceptor (TAI). In a very simplified way, the TAI component of the WAS ND7 security infrastructure is the equivalent to the Web Agent component for the IHS Server. Both establish a link from the application infrastructure to the security policy-based tier.

When to use TAI

In most cases, in-house custom applications will not rely on TAI on the WAS ND7 side unless there is a business requirement. However, there may be third-party solutions and off-the-shelf products that have been designed with their security centered on TAI. For instance, a third-party solution could be the application that authenticates users implemented as an EA hosted on the WAS environment itself. The SiteMinder J2EE modules rely on TAI to communicate with the SiteMinder Policy Server to establish the identity of authenticate users as well as the authorization side of their interactions. On the other hand, an off...

lock icon The rest of the chapter is locked
Register for a free Packt account to unlock a world of extra content!
A free Packt account unlocks extra newsletters, articles, discounted offers, and much more. Start advancing your knowledge today.
Unlock this book and the full library FREE for 7 days
Get unlimited access to 7000+ expert-authored eBooks and videos courses covering every tech area you can think of
Renews at $19.99/month. Cancel anytime