Creating an Authentication Scheme for the Authenticator

Configuring Single Sign-On Using Oracle Access Manager 10g 16-55 BEA_HOMEwlserver_10.xserverlibconsole-extautodeployoamauthentication provider.war 4. Go to the Oracle WebLogic Administration Console.

5. Click Lock Edit, if desired.

6. OAM Authenticator

:

a. Click Security Realms and select the realm you want to configure.

b. Select Providers, Authentication, and click New to display the Create a New

Authentication Provider page c. Enter a name and select a type: Name OAMAuthN Type: OAMAuthenticator OK d. Click the name of the Authentication Provider you have just created to display the Provider Configuration page. e. In the Provider Configuration page, set the required values as follows: Access Gate Name: The name of the AccessGate profile used by the provider. This must match exactly the name in the AccessGate configuration profile in the Access System Console. Access Gate Password: The same password, if any, that is as defined for the AccessGate configuration profile in the Access System Console. Primary Access Server: The host:port of the primary Access Server that is associated with this AccessGate in the Access System Console. Advanced Configuration : Following are several advanced configuration values. Transport Security: The communication mode between Access Server and AccessGate: open, simple, or cert. If transport security is Simple or Cert, include the following parameters and values: Trust Store: The absolute path of JKS trust store used for SSL communication between the provider and the Oracle Access Server. Key Store: The absolute path of JKS key store used for SSL communication between the provider and the Oracle Access Server. Key Store Pass Phrase: The password to access the key store. Simple mode pass phrase: The password shared by AccessGate and Access Server for simple communication modes. Secondary Access Server: The host:port of the secondary Access Server that is associated with this AccessGate in the Access System Console. Note: You might have only one AccessGate configuration profile for the Authenticator.