8-2 Oracle Fusion Middleware Integration Guide for Oracle Access Manager
■
The first authentication scheme uses Basic Over LDAP.
■
The second authentication scheme is a higher-security level and integrates OAAM Server by using a custom form-based authentication scheme.
Refer to Section 8.4, Configure OAM Authentication Scheme.
.
8.2 Integration Overview
Except where specified, the following procedures are required to complete the integration of Oracle Access Adaptive Manager 11g and Oracle Access Manager 10g.
■
Configure OAM AccessGate for OAAM Web Server
■
Configure OAM Authentication Scheme
■
Configure Oracle Access Manager Connection Optional
■
Set Up WebGate for OAAM Web Server
■
Configure OAM Domain to Use OAAM Authentication
■
Configure OHS
■
Configure Oracle Adaptive Access Manager Properties
■
Turn Off IP Validation
8.3 Configure OAM AccessGate for OAAM Web Server
In Oracle Access Manager and Oracle Adaptive Access Manager integration, the Oracle Access Manager AccessGate fronts the Web server a traditional WebGate to
OAAM Server.
To configure the Oracle Access Manager AccessGate that fronts the Web server to OAAM Server, perform the following steps:
1. Click Add New AccessGate.
2.
Use the settings in the table below to create a new AccessGate and assign it an Access Server
Table 8–1 OHS WebGate Configuration
Parameter Value
AccessGate Name ohsWebGate
Description AccessGate for Web server hosting OAAM Server
Hostname hostname
Port port
AccessGate Password passwd
Debug Off
Maximum user session time seconds
3600 Idle Session Time
seconds 3600
Maximum Connections 1
Transport Security Open
Integrating Oracle Access Manager 10g and Oracle Adaptive Access Manager 11g 8-3
3. Click AccessGate Configuration.
4. Click OK to search for all AccessGates.
The new AccessGate is now listed
8.4 Configure OAM Authentication Scheme
To leverage OAAM Server as an authentication mechanism, Oracle Access Manager must have a defined Authentication Scheme to understand how to direct
authentications to OAAM Server.
To define the authentication scheme for Oracle Adaptive Access Manager, follow the steps below:
1. Click Authentication Management.
2. Click New.
IP Validation On
IP Validation Exception leave blank
Maximum Client Session Time hours
24 Failover Threshold
1 Access server timeout
threshold leave blank
Sleep for seconds 60
Maximum elements in cache
10000 Cache timeout seconds
1800 Impersonation Username
leave blank Impersonation Password
leave blank Access Management
Service On
Preferred HTTP Cookie Domain
.domain_name Preferred HTTP Host
hostname:port Deny on not protected
Off CachePragmaHeader
no-cache CacheControlHeader
no-cache LogOutURLs
leave blank User Defined Parameters
leave blank Assign An Access Server
Primary oam_hostname:port
Number of Connections 1
Table 8–1 Cont. OHS WebGate Configuration
Parameter Value
8-4 Oracle Fusion Middleware Integration Guide for Oracle Access Manager
3.
Using the settings in the table below, begin creating the new OAAM Server authentication scheme:
4. Click Save.
5. Click Ok to confirm the saved operation.
6. Click Plugins.
7. Click Modify.
8. Click Add.
9.
Create the plugin configurations using the information presented in the table below.
10. Click Save.
11. Click General.
12. Click Modify.
13. Set Enabled to Yes.
14. Click Save.
8.5 Configure Oracle Access Manager Connection Optional