Recommended Production Scenario for Portal-Based Security

15-24 Publishing Reports to the Web with Oracle Reports Services ■ Reassociating Oracle Reports to Oracle Portal ■ Configuring External Oracle Internet Directory for Standalone Servers

15.9.1 Configuring External Oracle Internet Directory for In-Process Servers

You can migrate from the default embedded ID store of WebLogic Server to an external Oracle Internet Directory to configure the ID store and Policy store settings. Note that configuration of an external Oracle Internet Directory is a post-installation procedure.

15.9.1.1 Configuring External Oracle Internet Directory as ID Store When Using JPS-Based Security

If you are using JPS-based security, you can configure an external Oracle Internet Directory as ID store through the Oracle WebLogic Server Administration Console. To configure an external Oracle Internet Directory as an ID store through Oracle WebLogic Server, complete the following steps: 1. Navigate to the WebLogic Server Administration Console.

2. From the Domain Structure window, select Security Realms.

The Summary of Security Realms page is displayed. 3. Select a Realm from the Realms table.

4. From the settings for the realm page, click the Providers tab.

5. Select New from the list of Authentication Providers.

6. Enter a name in the Name field. From the Type drop-down list, select

OracleInternetDirectoryAuthenticator , and click OK.

7. Select the new authenticator, and set the Control Flag to Sufficient.

8. Select the Provider Specific tab, and enter valid values in the appropriate fields.

9. Select the default Authenticator and set the Control Flag to OPTIONAL.

10. Click Save.

11. Restart the Admin Server.

12. Select the Security Realm Users and Groups. Ensure that all users of external

Oracle Internet Directory are seen on this page. Now, users trying to access the in-process servers are authenticated based on the users specified in the external Oracle Internet Directory. 15.9.1.2 Configuring an External Oracle Internet Directory as Policy Store When Using JPS-Based Security If you are using JPS-based security, you can configure an external Oracle Internet Directory as policy store though Oracle Enterprise Manager. To configure the policy store in Oracle Enterprise Manager, complete the following steps: 1. Log in to Oracle Enterprise Manager. 2. Navigate to the WebLogic domain.

3. From the WebLogic Domain menu, select Security Security Provider

Configuration .