Click Edit. Oracle Fusion Middleware Online Documentation Library

7-12 Oracle Fusion Middleware Security and Administrators Guide for Web Services Figure 7–6 Edit Configure Property Window Displayed When Creating an Assertion

4. Enter the values for your configuration and click OK.

Adding Assertions to a Policy You can add assertions from the Create Policy page, the Copy Policy page, or the Edit Policy Detail page. Each policy can contain only one assertion for each of the following categories: MTOM Attachments and Reliable Messaging. The policy can contain any number of assertions belonging to the Security category; however, the combination of assertions must be valid. For more information on valid assertions, see Validating Web Services Policies on page 7-15. To add an assertion to a policy: 1. Navigate to the Create Policy page, the Create Like page, or the Edit Policy Detail page.

2. In the Assertions section, click Add.

3. In the Add Assertion box, enter the name for your assertion, and select an assertion from the Assertion Template list.

4. Click OK.

5. To configure the assertion, click the Settings tab and edit the settings as required.

6. To edit the configuration properties, click the Configurations tab.

The list of configuration properties defined for the assertion are displayed.

7. Select the property to be edited and click Edit.

The Edit Configure Property window is displayed as shown in Figure 7–7 . Note: When you add an assertion to a policy, as described in Adding Assertions to a Policy on page 7-12, you can configure the assertion identify store properties, specifically the Value, Default, and Description properties, to match your environment. The Content Type property setting defined in the assertion template cannot be changed, and is not displayed in the Edit Configure Property window. Managing Web Service Policies 7-13 Figure 7–7 Edit Configure Property Window Displayed When Displayed in a Policy

8. Edit the Configuration properties and click OK.

Note that you can edit only the Description, Value, and Default properties. The Content Type property setting defined in the assertion template cannot be changed, and is not displayed. For details about these properties, see Editing the Configuration Properties on page 7-11.

9. When you are done, click Save to save the policy.

Adding an OR Group to a Policy You can create an OR group, consisting of one or more assertions, enabling a single policy to accept multiple types of security tokens. A client can enforce any one of the policies that are defined in the OR group. For more information, see Defining Multiple Policy Alternatives OR Groups on page 3-9. You can add only one OR group to a policy. Once you have generated an OR Group, the Add OR Group button is greyed out. You can add an OR group from the Create Policy page, the Copy Policy page, or the Edit Policy Detail page. To add an OR group to a policy: 1. Navigate to the Create Policy page, the Create Like page, or the Edit Policy Detail page.

2. In the Assertion List section, click Add OR Group.

3. In the Add OR Group dialog, enter the name of the first assertion in the group, and select an assertion template from the Assertion Template list.

4. Click OK.

The assertion is added under the OR Group. 5. To add additional assertions to the OR group: a. Ensure that an assertion within the OR group is currently selected.

b. Click Add.

c. In the Add Assertion dialog, enter the name of the assertion in the group, and select an assertion template from the Assertion Template list.

d. Click OK.

6. To configure the assertions, see Configuring Assertions on page 7-14. The policy attribute values for attachTo and category limit the assertions that are valid within the current policy. All assertions within an OR group must be