User authentification question ?

hi,
i am using wsad, i want to protect some ressources, for this i add all
security tags needed in the web.xml, except the informations about user,
because it server specific (username, passwod, role), i am using websphere
contained in the wsad, my question is at which location i have to put this
information, is it in the server-cfg.xml file ????
thanks for your help

In WebSphere App. Server you have three options for storing user information (user name and passwords).
1. LDAP server (any supported by WAS)
2. You can use local operating system or domain accounts.
3. You can implement inteface com.ibm.websphere.security.CustomRegistry
This interface has ~14-16 methods, like getUsers(), getUser(String), checkUserPassword(String user,String password)... etc
If you choose 3rd option - you obviously have to write a class with all these methods, and its really limited only to your imagination where you store user info in this case:)
Oleg.

Similar Messages

  • HT201441 i just bough a used iphone but looks that it was found and i cant unlock it. its still link to the last user my question is how do i find out who is the last owner so i can unlock it

    i just bough a used iphone but looks that it was found and i cant unlock it. its still link to the last user my question is how do i find out who is the last owner so i can unlock it

    peeweenborre wrote:
    i just bough a used iphone .... its still link to the last user ...
    If you cannot get this information from the seller
    Removing a device from a previous owner’s account
    You need to return the Device for a refund,

  • Portal WebService User Authentification error

    Hello all,
    I created a portal webservice similar to the one described in tutorial "Creating a Web Service in Enterprise Portal 6.0".
    When I tried to test it in Enterprise Portal Web Services Checker I got the error below:
    <b>The User Authentification is not correct to access to the Portal Service com.sap.portal.prt.soap.ContentService or the service was not found.</b>
    I already added group Everyone to my service in Portal Permissions and it still does not work.
    I read weblogs below but none helped me:
    1 - Unable to access portal service from web service..........urgent
    2 - IllegalAccessError when calling a WebService
    I checked the proxy settings and it seems to be ok.
    Does anyone have another suggestion?
    Regards,
    Mauricio

    I found the reason.
    I did not check End User checkbox for the Everyone group we inserted into Permissions of the Web Service.
    Regards,
    Mauricio

  • KM Navigation - user authentification

    Good morning,
    When the user visualize documents, in some occasions appeard pop-up of user authentification appears, although to cancel opens  the document. 
    Why does it request validation? 
    thankss, regards,
    Mercedes

    Hi Mercedes,
    Please refer to this Weblog.
    /people/john.mittendorf/blog/2005/07/29/disabling-secondary-popup-when-accessing-office-2003-documents-through-km
    It explains the cause of the secondary user authentication popup along with the solution for the same.
    All the best!
    Warm Regards,
    Ritu R Hunjan

  • Adding user challenge questions.

    I have been successful in reading and changing questions and answers programmatically but have not been able to add new user questions. (I have been able to add them through IDM online interface.)
    Does anyone know how to add new user challenge questions?

    I am curious at what point your doing this? I have a set of challenge questions and answers in an LDAP that I would like to use to populate the fields inside of iDM. This way, I could utilze the iDM screens/logic when a user forgets their password. I would also need to keep these fields updated in iDM as they could change in the LDAP. Any suggestions?

  • SAPUI5 and BPM: User authentification

    Hi there,
    my UI5 application to claim and complete BPM tasks works now.
    The only remaining issue I have is about user authentification.
    To secure my UI5 application, I've modified web.xml and web-j2ee-engine.xml int the following way (according to this blog):
    web.xml
    <security-constraint>
         <web-resource-collection>
              <web-resource-name>ApproveRequest</web-resource-name>
              <url-pattern>/*</url-pattern>
         </web-resource-collection>
         <auth-constraint>
              <role-name>ApprovalWorkflow</role-name>
         </auth-constraint>
    </security-constraint>
    <login-config>
         <auth-method>FORM</auth-method>
         <realm-name>ApprovalWorkflow</realm-name>
    </login-config>
    <security-role>
         <role-name>ApprovalWorkflow</role-name>
    </security-role>
    web-j2ee-engine.xml
    <?xml version="1.0" encoding="UTF-8"?>
    <web-j2ee-engine xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
         xsi:noNamespaceSchemaLocation="web-j2ee-engine.xsd">
         <spec-version>2.4</spec-version>
         <security-role-map>
         <role-name>ApprovalWorkflow</role-name>
         <server-role-name>Administrator</server-role-name>
         </security-role-map>
    </web-j2ee-engine>
    My user is coming from Active Directory and assigned to the UME role "Administrator".
    If I open my UI5 application, the standard SAP login form is displayed.
    But after successful login my application fails when the oData model is created:
    var oDataModel = new sap.ui.model.odata.ODataModel(taskDataSvcURL, true);
    In the debugger I get the following error message (and nothing in NWA logs):
    Uncaught TypeError: Cannot read property 'dataServices' of undefined
    If I'm logged into to some SAP standard application (NWA, Portal) before calling my application, everything's working fine.
    Thanks in advance.
    Best regards,
    Thorsten.

    Hi,
    I solved it myself with the help of our basic admin.
    Go to "NWA->Configuration->Security->Authentification and Single Sign-On".
    Then select "SAP-J2EE-Engine" and click on "Edit".
    Search you SAPUI5 application and set "Used Template" to "Ticket"
    Afterwards it works for me.

  • Long-time Eudora user, rookie Mail user--have questions, need help!

    Hi, all!
    As the subject heading says, I've been using Eudora for a very long time (way past its shelf life) and have been playing around with Mail off and on over the past year.  (Now, in Eudora's defense, the expiration date on it was a "Best by..." not a "Use by..." date   and it's been working fantastically for years! )
    I recently started to plunge into Mail more deeply and have a couple of questions.
    1. Drafting vs. queuing. 
    I am used to Eudora's system where a bunch of drafted messages sit in an Outbox.  They stay there until I flag QUEUE for the ones I'll eventually be mailing.
    It's a good system.  A quick look at the flags in the Outobx lets me know which I still to need to work on, and which ones are ready to go out (or need a final review before sending).   The user then selects "Send Messages" and it e-mails the ones queued in the Outbox, but not the remaining draft emails that haven't yet been queued.
    How do I set up something like that in Mail?
    Right now, all I have is a list of draft messages and I cannot tell which ones are still really drafts and which are ready to be sent!
    2.  Work-around to try and mirror Eudora's system.
    I tried creating a new mailbox called Queue, in which I can park the emails I've done editing.  Of course, the problem with such a scheme is that when I want to send messages, I either have to put them back into the Drafts mailbox, from where I can select and send everything (including ones I haven't finished editing!), or drag them into Mail's Outbox where they go out instantly.  That's a little freaky and I can see disasters happening (emails going out when I'm wanting to drag other messages to a different mailbox).
    3.  Disable auto-sending? 
    Is there a way of turning off and on the Outbox's automatic sending action?  That could be the simplest solution for me.  I'd really like to send messages only via a menu command--yet, from I've determined, Mail's Send menu command will send any messages selected in the Draft mailbox.  Again, I see screw-ups with that as the wrong draft could be selected and Mail would send it out. 
    4.  Display of badges for mailboxes.
    This is more of a curiosity, but is there a way of having a user-created mailbox show how many e-mails are in there?
    Solutions?
    What do you all do as to work flow?  How do you go about creating and revising a bunch of e-mails, but only sending out certain ones?  And ensuring that only the ones you want to go out, go out?!

    Thank you for posting all this info.  Unfortunately i have no idea how to do flags and how to use a smart mailbox as a place to store emails i am not ready to send.  Eudora is vastly superior in all the things it empowers the user to quickly and easily do, in the traditional Apple spirit of intuitiveness, clear direct normal (not esoteric) communicatioin and user friendliness.
    about three weeks ago i was pretty much forced into Mountain Lion bcause my old MacBook is barely functioning at all and i got a new MacBook Pro.  So, good bye Eudora that i've used since 1995, only because i couldn't find another mail program that did what it does.  I wonder why there aren't others.  I've tried MailForge, it's a great attempt but it seems to have run out of steam and isn't working well enough. 
    I am using Mail and Gmail. The result is i'm suffering a whole range of loss of functionality in email, and am not getting a lot of messages, they are here somewhere but i can't always find them, i have to go to my old computer, enduring a kind of freeze where a beachball is a sign of progress, a trackpad that barely works for drag and drop anymore and a battery that needs reaplacing. i think the hard drive is failing. but i still need it to retrieve my email reliably, to a poiint where i see i 'm going to have to put money into it so it can keep working, for email.  what a poor solution. I am trying as best i can to have Mail communicate better. 
    i just wanted to thank you for your encouraging posts and giving me something to follow up on to try to use, to address this one of many loss of Eudora problems. Why wouldn't a mail program give you the option to queue mail?   Why take away options and functionality?   sorry, i'm just ranting because i've had a very frustrating last few weeks related to numerous new OS challenges, but email is the only really serious one. 
    I really like your idea of badges to show number of new messages, i think that's what you meant, you didn't say 'new', but another great and helpful thing about Eudroa is sorting mail into mail boxes and opening those mailboxes that get new mail each time you download mail, so you kow what's new. You can immediately see it.  In Apple Mail, i find i have to dig through each of the 12 'on my mac' mailboxes/folders i created so far, to see if there is new mail in them. A lot of extra trouble for something that a superior email program can do for you.

  • Receiver SOAP adapter - User authentication question

    XI experts,
    Here is the scenario - IDOC > XI > SOAP - Ansynchronous call..
    I need your all help to understand the user authentication on the "Receiver SOAP Adapter"... We are using "HTTP" transport protocol.
    I believe, the userid which we entered in the communication channel needs to have proper security on the web server. The Web server URL starts with "http://lsme
    01.xyz.com/...." .
    Question : Is this usrid and password will be encrypted when XI calls this web service?
    If an answer is "NO" then is there anyway we can encrypt it?
    Thanks in advance!
    Points will be given..
    MP

    XI experts,
    I need an answer to the following question....
    The Web server URL starts with "http://lsme01.xyz.com/...." .
    Question : Is this usrid and password will be encrypted when XI calls this web service?
    If an answer is "NO" then is there anyway we can encrypt it?
    Thanks in advance!
    Points will be given..
    MP

  • FCP user preference question

    I got a project from overseas, gotta fly there to edit a video. they provide my basic facilities.
    I used to edit on my own machine....because the short cuts and whole the favorite effects and transitions that I saved in my FCP.
    So my question is, since I gonna shift my FCP user preference files to another FCP, do they affect other editor's preferences. I am pretty sure on the FCP, there are lots of preference settings that other editors made.
    in particular, let's say my shiftcontrol2 is 3 ways color correction tool, but on the computer that I am going to use might not be the color 3 ways, it might be some other functions...
    can i just save their preference in a folder, and put my preference in , and after i am done, and put back their preference..?
    thanks for your advice and suggestion in advance,
    your help is highly appreciated
    Hiro

    Hiro
    You can use FCP Rescue to backup FCP preferences file and restore it later:
    http://fcprescue.andersholck.com/
    Or you can do it manually:
    http://docs.info.apple.com/article.html?artnum=93385
    Hope that helps !
      Alberto

  • Authenticated Users Group Question

    I have a quick question regarding the Authenticated Users "group". I used to be a systems administrator, but I'm a bit rusty since I've been a software developer for the last 10 years. A conflict with data center operations (DCO) group
    at work lead me to get another opinion.
    The question is this... is the authenticated users group a domain-level group or is there a local authenticated users group that would allow only users authenticated locally? We have a share that permits the authenticated users group access.
    My opinion is that all domain users who have authenticated successfully have access to this share. The DCO group is telling me that this is the local (to the server containing the share of course) authenticated users group only.
    Is there such a thing as a local-only authenticated users group? To me this doesn't even make sense, but I could very well be wrong.
    Nathon Dalton
    Sr. Software Engineer
    Blog: http://nathondalton.wordpress.com

    I apologize. I don't think I explained myself correctly. Let's consider the following...
    SERVER: SERVER1
    DOMAIN: DOMAIN1
    SHARE: \\SERVER1\SHARE1
    SHARE PERMISSIONS: Authenticated Users - Full Control
    Given the above information, is it possible that the Authenticated Users group will allow ONLY users that are defined on SERVER1 to access \\SERVER1\SHARE1?
    My understanding is that's not possible. There's one defined Authenticated Users group and that represents ALL users that are authenticated against DOMAIN1, whether added to local groups, shares, etc.
    What I'm being told however is that SHARE1 having Authenticated Users assigned is okay since only those user accounts defined on SERVER1 will be able to access it. All the users in the domain will NOT be able to access it. I think this is bogus. Am I wrong?
    Nathon Dalton
    Sr. Lead Developer
    Blog: http://www.nathondalton.com

  • Mandatory User input question

    Hello,
    I am trying to write a script that I can use to list out all permissions in a SharePoint site (site).
    I had a mandatory parameter set : [string]$SiteCollection
    Where the user would need to type the site collection and then my command would use that input to find the permisssions for the site collection.
    For my test I used our site collection called service.  It never ran.  After checking the variable $SiteCollection it took the name I typed in 'service' and actually ran the command, thus the variable $SiteCollection was filled with a list of all
    the current services on the machine.
    2 questions
    1) How can I set the input of the mandatory variable to be literally what I type in, not running an alias such as 'service'
    2) I though this might be better if I gave the user a list of site collections to pick from, thus they would not need to know the correct spelling.  Is there a way to list out all the sites (Get-SPSite) in a list with a number next to them and the user
    could then select the number that corresponds with the correct site collection as their input?
    Thanks for you help

    Hi Robert,
    I‘m writing to check if the suggestions were helpful, if you have any questions, please feel free to let me know.
    If you have any feedback on our support, please click here.
    Best Regards,
    Anna
    TechNet Community Support
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact [email protected]

  • EAP-TLS User Certificate Question

    I've setup a test ACS server and have everything functioning correctly including the WLAN. However, is there anyway for EAP-TLS to use ONLY the machine certificate and not the user certificate? We are not currently setup with per-user certificates. I'm guessing not on this... My primary question then is with User Certificates, how do you handle the following scenerio:
    I have many CoW's (computer on wheels) through out the hospital that nurses use for inputting patient information. They all have a simple generic username/password (BADDD!!!!) so with this user it won't be hard to have default_user certificate install on the machines. But what if Doctor X decideds to walk up to one of these CoW's and wants to logout and log back in with his user/password on a machine he's never used before. How do we handle making sure he's able to connect if doesn't already have a cert on this computer? I'm quite mistified by this.
    Thanks
    -Raun

    If you are using the MS Supplicant, you need the following registry settings:
    "HKLM\SOFTWARE\Microsoft\EAPOL\Parameters\General\Global\AuthMode", 2, "REG_DWORD"
    "HKLM\SOFTWARE\Microsoft\EAPOL\Parameters\General\Global\SupplicantMode", 3, "REG_DWORD"
    This forces it to only use hardware certificates and sets the authentication to do the correct RFC polling.
    As for the other issue, MS CA user certs do not "roam". Yet. There is discussion of roaming credentials being in Windows 7, but not entirely what that means. Roaming certificates can be easier with a product like Venafi. There "Encryption Management" tools are certificate management suites. The do have roaming management, or at least did when we talked to them.
    Oh, and if you use two CAs (hardware and user), the separation keeps it straight too.

  • User Interface Questions

    I have already programmed some dialogs in JavaScript. I'm not using Script UI, although I've played around with Script UI a little bit. Now I'm getting a bit more advanced with some user interfaces and dialogs and have a few questions:
    1. Is it possible to create a "live updating" dialog similar to InDesign's Files > New > Document, where based on a menu selection of a preset, the dialog's editboxes change their values to reflect that menu selection?
    2. Can you program something like the Presets button in InDesign's New Document dialog where the user clicks "Save Preset", names it, and then the main dialog updates with the new preset the user just created.
    3. Script UI does not have measurement friendly boxes, does it? By that I mean that when you enter inches, mm or picas, the box will translate it into the current measurement type.
    4. I love the nudge option on the measurement editboxes. Can that be done via Script UI?
    Ideally my coding needs to work in both CS2 and CS3 and I code in JavaScript because that's what I know, but if the "live updating" stuff is possible in AppleScript or VBScript I'd still like to be aware that it can be done.
    While code examples of any of this are welcome, I mostly need to know what's possible, and any starting point you can offer will help (like the name of the control). That way I can start looking things up and figuring them out.
    Thanks in advance,
    Dan

    Thanks for the answers Bob. They are exactly as I thought, but wanted to make sure. It sucks that we have to recreate (via code), things that were given to us before Script UI. I know Script UI is more powerful in some ways (and hopefully sure will get more powerful with time) but loosing measurement boxes is a big bummer. They had so many nice built in features. I feel like I need to reinvent the wheel with Script UI.
    1. Do you have any example dialogs that you could post? I can often figure out how to get a lot of stuff done by looking over examples other people have created. Especially things where one feature interacts with another, but even just a dialog with menus, text, etc so I can check out how to layout the dialog. I have created one dialog with Script UI, but am not sure if I am doing it very efficiently and I couldn't find any Script UI stuff in InDesign's sample scripts.
    2. I suspect if I use Script UI I'll have to verify that only numbers are entered into the edit fields right? I need numerical values only for what I will be doing. Any thoughts on the best way to verify it's only a number in there? Can I do that live in the dialog before the user clicks OK? Argh, all these complications make me less than enthusiastic to go to Script UI, but I really would like to be able to have a live updating dialog.

  • How to make form scroll down as user completes questions

    I have a multi page form that is mostly hidden but as a user answers 1 question this may then prompt another question to appear, what I would like to do is ensure that the form auto scrolls down as the questions are answered.
    Any help would be appreciated

    Hi,
    You can use setFocus(), but I am not sure if this will lead to a good user experience. As the user may not expect the form to automatically jump to a new question.
    Try working with the tab order.
    Niall

  • A PC user's questions about Airport Extreme & Airport Express

    Hi all,
    I have a few questions regarding both the Airport Extreme AC and the Airport Express. 
    I am a PC user who is currently looking at replacing my Cisco Linksys EA4500(primary router) and my Linksys E2500(bridge router) due to the lack of regular firmware updates that Linksys fails to provide for their routers  and the fact that I simply find Linksys products to be buggy..  Based on my research,  Apple's Airport Extreme N and the AC versions have received excellent reviews on Amazon and I am considering purchasing both the Airport Extreme AC(to replace my Linksys EA4500) and the Airport Express(to replace my Linksys E2500).
    Before I get to my questions, let me be frank in saying that I do not have a Mac(but intend to after my desktop dies) at this time but in my house we have two iPhone 4s's and one iPad 2 as far as Apple products are concerned.  My computer network consists of my HP Windows 7 based desktop and HP Windows 7 laptop and I have a home ethernet in every room in the house . In addition, my den's ethernet connection is connected as Ethernet wall jack in which the connections include---->Ethernet switch------>Tivo---->Playstation 3/Xbox 360/Nintendo Wii/----->Samsung Smart TV---->Linksys E2500.
    My questions are as follows:
    1. Initial/Out of the box set up: Based on what I have read here, it is possible for a PC user to setup the Airport Extreme by downloading the Airport Extreme utility software from Apple. However I have been confused based on what I have read on Amazon in that some users report that the initial setup can only be done using a Mac.  Would someone from this forum kindly clairify this for me? Can I set up the Airport Extreme with my network assuming that I have previously downloaded an installed Apple's Airport Extreme Utility for the PC?
    2. Using the Airport Express as a wireless bridge: Currently my Linksys E2500 serves as my secondary router in my den in bridge mode.  Can I set up an Airport Express as a wireless bridge assuming I was sucessfully in setting up my Airport Extreme? On Linksys products this is done by setting the router in bridge mode and assigning it a specific IP address within the bridge router's settings.  So for example, my Linksys E2500 has a 192.168.1.1X IP address, can I do this with the Airport Extreme?  Note the the intention here for the extra router in my den to provide additional wireless coverage due to the size of my home.  I do not need it to provide me with the same wireless network name as my primary router, I only want to provide the back of my house with additional wireless coverage that a primary router will not provide.
    3. Router Security and reliability:  I would like the router that I purchase to include regular firmware updates beyond that of one year.  Especially now that most modern routers have some sort of cloud set up,  I wouldn't want to purchase a router today, only to find out that I wouldn't be able to update its firmware one year from now.   With respect to Apple's routers,  how often does Apple release firmware and typically speaking;  how long will Apple support additional firmware releases for its products?
    Thanks to anyone who reads and responds to my long post! 

    The one problem is Apple using their own automatic port opening system.. NAT-PMP which is fine for apple clients but will not work with almost anything else made which depends on UPNP ..
    There are lots of hassles with PS3 and XBox live and anything that depends on standard automatic port opening for interactive internet connection.
    Manually opening ports is possible but a pain.
    eg
    AirPort Extreme and xbox 360
    https://discussions.apple.com/thread/5385065?tstart=0
    I do agree with John Galt that the Apple products are well made and generally great.. they did have a bad capacitor failure issue in the Gen1 and Gen2 TC which he may have forgotten about.. I have repaired about 200 of the bludgers. And there was a dedicated site to pressure apple to fix them.. with 2500 recorded dead TC.
    See http://timecapsuledead.org/
    See
    https://sites.google.com/site/lapastenague/a-deconstruction-of-routers-and-modem s/apple-time-capsule-repair
    And some ongoing issues.. even post getting that fixed up.
    https://sites.google.com/site/lapastenague/a-deconstruction-of-routers-and-modem s/apple-time-capsule-repair/new-issue-with-a1355-gen-3-tc
    But the AEBS had external power supply so didn't add to the heat of built in HDD and power supply in a case too small without cooling. New ones seem to have learnt the lessons of the past in that the power supply is internal but they use a fan system to keep it cool.
    See http://www.ifixit.com/Device/Apple_Time_Capsule for internal construction.. TC and AEBS are now identical except for the hard disk.
    An option worth considering is using a router with third party source firmware.
    You are then never cut off from great updated firmware.. and you can do amazingly more with the fuller setup that includes Telnet cli and extensive interface on the GUI.
    Eg Gargoyle on a Netgear WNDR3800 or even cheaper TP-Link WDR3600 or WDR4300.
    These offer full QoS, not in Apple products.
    Full throttling controls, not in Apple products.
    Quota, not in any other products in domestic market at all.
    NAT-PMP and UPNP, not in Apple products.
    VPN, not in Apple products.
    Multiple VLAN, Multiple IP addressing, not in Apple producs.
    SMTP, which Apple removed from all their new products.. no reason why.
    Log access, which Apple removed from the new airport utility.. no reason why.
    etc.
    If for some reason that firmware doesn't suit.. you can flash over to DD-WRT, or OPENWRT.. etc. in other words you are never again beholden to the manufacturer who after the product is EOL is also end of support.

Maybe you are looking for

  • Upgrade Oracle 9Upgrade Oracle 9.2.0.6 to 9.2.0.8

    Hi, I want to upgrade Oracle Database from Upgrade Oracle 9.2.0.6 to 9.2.0.8. And Application is 11.5.10.2 Can some one pls guide me Which Patch should I donload from Metalink. Thanks,

  • Mutiple Canvases Single form

    Hi, I'm facing a problem of having multiple canvases(3) in single form. I've two Data blocks(Master & Detail). Master having one canvas. But details have two different canvases. I've created 3 different menus for 3 canvases. say Master,Detail1,Detail

  • What is the best and affordable printer for macbook pro?

    hi.... i have difficulties in printing my assignments... which i need to save my work using my thumbdrive then open it at windows to print....therefore, i want to buy a printer that can works with my macbook pro...what is your advice? i have tried to

  • Java APP inside a Win32 Window

    Hello, Q1: I need to embed a complete java swing application inside an existing win32 application window (I have the HWND of it). How to do this ? Q2: Is it possible to set the native Win32 parent window of a JFrame with JNI ? Cheers, Mik

  • Restrict for movement type 201 by material typeu200F

    Dear Gurus, Can SAP restrict movement type 201 by material type? For example, Can i set authorization for 201 movement type to only material type UNBW material?