OAM Authenticator Configuring Providers for the Authenticator in a WebLogic Domain

Configuring Single Sign-On Using Oracle Access Manager 10g 16-61

a. General Tab

: For Authorization Rules, enter a rule name and, optionally, a brief description. Name: Default_OAM_IA_OWS_AuthZ_Rule Description: For use with OWS and Identity Asserter. Enabled: Yes Allow takes precedence: No Update Cache: Yes updates all Access Server caches immediately

b. Timing Conditions

: None required for this scenario.

c. Actions

: None required on this tab. Instead, you set these up under the Default Rules tab.

d. Allow Access

: Add details that define to whom the Allow Access part of the rule applies. Role: Any one e. Deny Access : Not Needed for this scenario. f. Return to the General tab for Authorization Rules and enable the rule so that you can add it to an authorization expression later.

7. Default Rules Tab

: From here you can add the authentication rule, authorization expression, and audit rule for this policy domain. These default rules apply to the resources it contains, unless the resource is protected by a specific policy. Click Default Rules, and then click Add. a. Authentication Rule : A policy domain must have at least one authentication rule, which specifies one authentication scheme and optional authentication actions. Enter a Name, optional description, and choose an Authentication Scheme. General tab : Fill in the as follows: Name: Default AuthN Rule Description: Default Rule for OAM IA OSW Authentication Scheme: Basic over LDAP Click Save. Actions tab : No authentication actions are needed in the default rule for Oracle Web Services Manager.

b. Authorization Expression

: The authorization expression in the default rules for a policy domain applies to all resources of the domain unless those resources are protected by a policy containing an expression. Click the Authorization Expression tab, and then click Add. See Also: Chapter 6 in Oracle Access Manager Access Administration Guide for details about configuring authorization schemes and rules. Note: With Oracle Web Services Manager you need an Authorization rule.