Note: This is part of the $299 special deal as this course was released before December 2015.
Have you ever wondered how to install and configure a federated repository (LDAP and internal file-based repository)?
Have you ever had trouble creating a custom stand-alone LDAP configuration?
Have you wondered how to automate the creation of a LDAP configuration using Jython scripting?
Would you like to know how to configure SSL for IBM HTTP Server?
Learn how to use your own self-signed certificates with an internal Certificate Authority
Like to know how to automate SSL Certificate Management?
The WebSphere Application Server 8.5.5.x – Essential Security Concepts course provides the student with a detailed example-based guide which takes the student through how to configure Global Security for Federated Repositories. This course also covers how to set up IHS administration and other Global security insights, along with SSL management sercrets often not addressed in most WAS courses. Jython scripts are also provided to automate the configuration of LDAP use in Global Security.
The course provides over 250 pages of information covering the following topics and more:
JEE Security
Global Security
An Unsecured Console
Turning On Global Security
Security Configuration Wizard
Virtual Member Manager
Role Management
Administrative Roles
Disabling Global Security
Setting The Internal Repository Using Scripting
Adding Ldap To A Federated Repository
Federated Repositories Recap
Apacheds
Installing Apacheds
Install Apache Directory Studio
Adding A New Partition
Importing An Ldif File
Ldap Security Settings
Wimconfig.Xml
Changing The OU For Ldap Bind
Looking at User Groups
Standalone Ldap
Configuring The Standalone Ldap Server
Testing The Connection
Review Of Security.Xml
Starting The Administrative Server
Permissions
Starting And Stopping IBM HTTP Server
Starting And Stopping IBM Administration Server
Creating A Web Server In WAS Admin Console
Testing A Connection From WASConsole To IBM Administration Server
Configuring Web Servers In WAS Admin Console
Generating The Plugin-Cfg.Xml File
Propagating The Plugin-Cfg.Xml File
Configure Ibm Http Server To Load The Plugin Module
Verify Defaultapplication Targets
Configuring SSLFor Communication
Creating A Self-Signed Digital Certificate
Adding Ssl To The Ihs Virtual Host Configuration
Propagating Keyring File From WAS To Web Server
Configuring Virtual Hosts
Automating Self-Signed Certificates
Creating A New Key Database
Setting The Database Password
Registering A Key Database With The Server
Creating A Self-Signed Certificate
Managing Certificate Signing From A Certificate Authority
Basic SSLOverview
Digital Certificates
Objective
Install OpenSSL
Create A CSRUsing Ikeyman Tool
Using Gskcmd Utility To Create A New Keyring Database To Store A CSR
Verifying A Certificate Request Via Command-Line
Verifying A Certificate Request Using Ikeyman
Listing Available Signers
Create A New CA
Signing The CSR Using The New CA
Check The CSR Using OpenSSL
Receive The Signed Certificate Into The Key Database Using Command-Line
Receive The Signed Certificate Into The Key Database Using GUI
Configure IBM HTTP Server With A Certificated Signed By A CA
Adding The CA’s Certificate To The Key Database
Firefox Example Error
Internet Explorer Example Error
Adding CA’s Certificate To The Browsers Trust Key Store/Database
Configure /etc/hosts File
Automating Web Server Definitions
Understanding The Plugin-Cfg.Xml File
Appendix A: Additional Information On OpenSSL Tool
Appendix B: Creating A Key Pair Using OpenSSL
Generate a Private Key
Generate a Public Key
Create A New CA Using Ca.Pl (CA Script)
Duration: 3-5 Days Self Study
Audience:
Experienced JEE Developers and Administrators having good experience with WebSphere Application Servers.
People looking to upgrade their skills to use the WebSphere Application Server Application client, and understand how configure security for WAS environments
Requirements:
Basic knowledge of Linux/Windows commands is expected. Prior experience in administering WebSphere Application Server version 6.1-8.x servers is expected, as is basic shell-scripting and Jython understanding.