Previous Topic: Configure the Agent to Return Group Membership to WebLogic Using Responses

Next Topic: Configure the Agent to Return Group Membership to WebLogic Server Using Agent Configuration Parameters

Example: Configure Groups as Responses for the SiteMinder Agent

Note: The following procedures provide an overview of the steps required to create the required policy objects with appropriate parameter settings. For detailed procedural information, see the Policy Server Configuration Guide.

To configure groups as responses

  1. In the SiteMinder Authentication Realm, configure an OnAuthAccept rule named Group Authentication Rule with a * resource filter.
  2. In the policy domain for the SiteMinder Authentication Realm, create SiteMinder responses with a static HTTP header attribute for the following sample WebLogic groups:

Name

Attribute
Kind

Variable Name

Variable Value

Group
Administrators

Static
HTTP Header

_SM_WLS_GROUP

Administrators

Group
Deployers

Static
HTTP Header

_SM_WLS_GROUP

Deployers

Group
Monitors

Static
HTTP Header

_SM_WLS_GROUP

Monitors

Group
Operators

Static
HTTP Header

_SM_WLS_GROUP

Operators

  1. In the policy domain for the SiteMinder Authentication Realm:
    1. Configure a policy named Group Administrator Policy.
    2. Attach the Administrator group or users, who belong to the Administrator group, to this policy.
    3. Attach the Group Authentication Rule to this policy.
    4. Bind the Group Administrator response to this rule.
    5. Repeat this step and configure separate policies for the Deployers, Operators, and Monitors groups.
    6. Bind the Group Administrator response to this rule.
    7. Repeat this step and configure separate policies for the Deployers, Operators, and Monitors groups.
    8. Repeat this step and configure separate policies for the Deployers, Operators, and Monitors groups.


Copyright © 2010 CA. All rights reserved. Email CA about this topic