Table of Contents
- Title and Copyright Information
- Preface
- Part I Understanding Security Concepts
-
Part II Basic OPSS Administration
- 5 Security Administration
-
6
Deploying Secure Applications
- Developing Oracle ADF Applications
- Choosing the Tool for Deployment
- Deploying Oracle ADF Applications to a New Environment
- Deploying Standard Jakarta EE Applications
- Deploying Audit-Aware Applications
- Migrating from a Test to a Production Environment
-
Part III OPSS Services
- 7 Life Cycle of Security Artifacts
-
8
Configuring the Identity Store
- About the Identity Store
- Configuring the Identity Store Provider
-
Configuring the Identity Store
- Identity Store Parameters
-
Understanding the Service Configuration
- Configuring the Service for a Single LDAP
- Configuring the Service for Multiple LDAPs without Virtualization
- Configuring the Service for Multiple LDAPs with Fusion Middleware Control
- Configuring the Service with WLST
- Configuring the Timeout Setting with WLST
- Configuring Other Parameters
- Restarting Servers
- Configuring Single and Multiple LDAPs
- Configuring Split Profiles
- Configuring Custom Authentication Providers
- Configuring Virtualization in Java SE Applications
- Querying the Identity Store Programmatically
- Configuring SSL for the Identity Store
-
9
Configuring the Security Store
- About the Security Store
- Using an LDAP Security Store
- Using a Database-Based Security Store
- Reassociating the Security Store
-
Migrating the Security Store
- Migrating the Security Store with Fusion Middleware Control
-
Migrating the Security Store with migrateSecurityStore
- Migrating All Policies with migrateSecurityStore
- Migrating System Policies with migrateSecurityStore
- Migrating Application Policies with migrateSecurityStore
- Migrating All Credentials with migrateSecurityStore in the Same Domain
- Migrating One Credential Map with migrateSecurityStore in the Same Domain
- Migrating All Credentials with migrateSecurityStore Across Domains
- Migrating One Credential Map with migrateSecurityStore Across Domains
- Migrating Audit Data with migrateSecurityStore
- migrateSecurityStore Usage Examples
- Configuring Security Providers with Fusion Middleware Control
- 10 Managing Policies
- 11 Managing Credentials
-
12
Managing Keys and Certificates
- About the Keystore Service
- About Keystore Service Commands
- Managing Keystores with Fusion Middleware Control
- Managing Keystores with WLST
- About Certificates
- Managing Certificates with Fusion Middleware Control
- Managing Certificates with WLST
- Replacing Demonstration CA Signed Certificates
- How Fusion Middleware Components Use the Keystore Service
- 13 Introduction to Oracle Fusion Middleware Audit Framework
-
14
Managing Audit
- Audit Administration Tasks
- Managing the Audit Store
- Managing Audit Policies
- Understanding Audit Time Stamps
- About Audit Logs and Bus-stop Files
- Audit Database Administration
- Best Practices for Audit Event Definitions
- 15 Using Audit Analysis and Reporting
-
Part IV Developing with OPSS APIs
-
16
Integrating Application Security with OPSS
- About Security Challenges
- Security Integration Use Cases
- The OPSS Trust Service
- Propagating Identities over HTTP
- Propagating Identities with the OPSS Trust Service
- Implementing a Custom Graphical User Interface
- Securing Oracle ADF Applications
- Code and Configuration Examples
- Propagating Identities with JKS
- 17 The Security Model
- 18 Developing with the Credential Store Framework
-
19
Developing with the User and Role API
- About the User and Role API
-
Working with Service Providers
- Setting Up the Environment
- Choosing the Provider Repository
- Creating the Provider Instance
- Configuring the Provider Start-Time and Runtime Properties
- Configuring the Provider when Creating a Factory Instance
- Configuring the Provider when Creating a Store Instance
- Configuring the Provider at Runtime
- Programming Guidelines
- The Provider's Lifetime
- Searching the Identity Store
- Creating and Modifying Entries in the Identity Store
- User and Role API Examples
- Configuring SSL for LDAP Providers
- 20 Developing with the Identity Governance Framework
- 21 Developing with the Keystore Service
- 22 Developing with Oracle Fusion Middleware Audit Framework
-
23
Configuring Jakarta EE Applications to Use
OPSS
- About Authentication in Jakarta EE Applications
- Developing Authentication in Jakarta EE Applications
- Configuring the Filter and the Interceptor
- Choosing the Appropriate Class for Enterprise Groups and Users
- Packaging a Jakarta EE Application Manually
- Configuring Jakarta EE Applications to Use OPSS
- 24 Configuring Java SE Applications to Use OPSS
-
16
Integrating Application Security with OPSS
- Part V Reference
-
A
OPSS Configuration File Reference
- First and Second Hierarchy Levels
- Third and Lower Hierarchy Levels
- <description>
- <extendedProperty>
- <extendedPropertySet>
- <extendedPropertySetRef>
- <extendedPropertySets>
- <jpsConfig>
- <jpsContext>
- <jpsContexts>
- <name>
- <property>
- <propertySet>
- <propertySetRef>
- <propertySets>
- <serviceInstance>
- <serviceInstanceRef>
- <serviceInstances>
- <serviceProvider>
- <serviceProviders>
- <value>
- <values>
-
B
File Store References
- File Store Hierarchy
- File Store Elements and Attributes
- <actions>
- <actions-delimiter>
- <app-role>
- <app-roles>
- <application>
- <applications>
- <attribute>
- <class>
- <codesource>
- <credentials>
- <description>
- <display-name>
- <extended-attributes>
- <grant>
- <grantee>
- <guid>
- <jazn-data>
- <jazn-policy>
- <jazn-realm>
- <matcher-class>
- <member>
- <member-resource>
- <member-resources>
- <members>
- <name>
- <owner>
- <owners>
- <permission>
- <permissions>
- <permission-set>
- <permission-sets>
- <policy-store>
- <principal>
- <principals>
- <provider-name>
- <realm>
- <resource>
- <resources>
- <resource-name>
- <resource-type>
- <resource-types>
- <role>
- <role-categories>
- <role-category>
- <role-name-ref>
- <roles>
- <type>
- <type-name-ref>
- <uniquename>
- <url>
- <user>
- <users>
- <value>
- <values>
- C Oracle Fusion Middleware Audit Framework Reference
- D User and Role API Reference
- E Administration with Scripts and MBeans
-
F
OPSS System and Configuration Properties
- OPSS System Properties
- OPSS Configuration Properties
- G OPSS API References
- H Using an OpenLDAP Identity Store
- I Configuring Adapters for Identity Virtualization
-
J
Troubleshooting OPSS
- The OPSS Diagnostic Framework
- Diagnosing Security Errors
- Troubleshooting Reassociation and Migration
- Troubleshooting Server Startup
- Troubleshooting Permissions
- Troubleshooting Connections and Access
- Oracle Business Intelligence Publisher Time Zone
- Troubleshooting Searching
- Troubleshooting Versions
- Troubleshooting Other Errors
- Need Further Help?