Previous Topic: Enable WebSphere Security Options

Next Topic: Configure the SOA Agent Login Module in WebSphere

Configure LDAP as a WebSphere User Registry

In a typical deployment, WebSphere and the Policy Server are configured to use the same LDAP user registry.

Note: If you are not configuring WebSphere and the Policy Server to use the same LDAP user registry (typically because WebSphere is already configured with a custom user registry), verify that the custom registry is properly configured (see the WebSphere documentation for information) and configure user mapping.

To configure a Policy Server LDAP user directory as a WebSphere user registry

  1. If necessary, start the WebSphere Server and the WebSphere Integrated Solutions Console.
  2. In the navigation tree click one of the following as appropriate for your WebSphere version:
  3. In the User account repository section, select Standalone LDAP Registry from the Available Realm Definitions drop-down menu.
  4. Click Apply to save your changes.
  5. Click Configure.
  6. Under Server user identity, enter the select the Server identity that is stored in repository option and type the identity and password of a user account to use to run the application server for security purposes in the corresponding fields.
  7. Under General Properties , fill in the following fields and then click Apply.
  8. Depending on the WebSphere configuration, check Reuse Connection and Ignore case for authorization.
  9. On WebSphere 7.0, select the Standalone LDAP registry option from the Available realm definitions drop-down and click Set as current.
  10. Click Apply to apply your changes. To save changes to the master repository, click System Administration and Save Changes to Master Repository.

    Note: Until you save changes to the master repository, the Integrated Solutions Console uses a local workspace to track your changes.