Fresh WebGate ProfileWebGate Not Installed Fresh WebGate Profile with Installed WebGate

16-46 Oracle Fusion Middleware Application Security Guide

7. Default Authenticator

: Perform the following steps to set up the Default Authenticator for use with the Identity Asserter:

a. Go to Security Realms, Default Realm Name, and click Providers.

b. Click Authentication, Click DefaultAuthenticator to see its configuration

page.

c. Click the Common tab and set the Control Flag to SUFFICIENT.

d. Save. 8. Reorder Providers:

a. Click Security Realms, Default Realm Name, Providers.

b. On the Summary page where providers are listed, click the Reorder button

c. On the Reorder Authentication Providers page, select a provider name and

use the arrows beside the list to order the providers as follows: OAM Identity Asserter REQUIRED OID Authenticator SUFFICIENT Default Authenticator SUFFICIENT d. Click OK to save your changes

9. Activate

Changes: In the Change Center, click Activate Changes 10. Reboot Oracle WebLogic Server. 11. Proceed as follows: ■ Successful: Go to Setting Up the Login Form for the Identity Asserter and OAM 10g . ■ Not Successful: Confirm that all providers have the proper specifications for your environment, are in the proper order, and that oamAuthnProvider.jar is in the correct location as described in Installing Components and Files for Authentication Providers and OAM 10g on page 16-4.

16.4.4 Setting Up the Login Form for the Identity Asserter and OAM 10g

This topic introduces the login form provided for the Oracle Access Manager Identity Asserter for single sign-on and provides a procedure that you can use to deploy the form. The form shown in Figure 16–9 is provided with the WebGate installation for Oracle HTTP Server 11g Web server. The form contains two fields UserID and Password and a Login button. The variables in this form are required by the Form Login authentication scheme that was generated by the OAMCfgTool and used in the policy domain protecting resources for Identity Assertion.