Previous Topic: Upgrade SPSNext Topic: Additional Configuration on SPS


Configure SPS

After you install SPS, run the configuration wizard. The configuration wizard lets you register the trusted host for the embedded SiteMinder Web Agent and performs some administrative tasks for the embedded Apache web server.

Important! Before you run the wizard, verify that you have set up the required objects at the Policy Server where you want to register the host. If these objects are not configured, trusted host registration fails.

Follow these steps:

  1. Open a console window and navigate to the directory sps_home/secure-proxy.
  2. Enter one of the following commands:
    Windows: ca-sps-config.exe
    
    UNIX: ca-sps-config.sh
    

    The configuration wizard starts.

  3. Select the version of the Policy Server with which you want to configure SPS.
  4. Select the option to perform host registration immediately.
  5. (Optional) Select the option to enable shared secret rollover.
  6. Perform the following steps to register the trusted host registration:
    1. Specify the name and password of the SiteMinder administrator.

      Note: The information you enter must already be defined at the Policy Server where the trusted host is registered.

    2. Specify the name of the Trusted Host and the Host Configuration Object.

      Note: The name you enter for the trusted host must be unique. The name for the Host Configuration Object must already be defined at the Policy Server where the trusted host is registered.

    3. Enter the IP address of the Policy Server where you want to register the trusted host.
    4. Select a FIPS mode.
    5. Specify the name and location of the host configuration file, SmHost.conf. The wizard lists the default location.
    6. Specify the name of the Agent Configuration Object.

      Note: The Agent Configuration Object that you enter must already be defined at the Policy Server where the trusted host is registered.

  7. Enter the following information for the Apache web server:
  8. Enter the following information for the Tomcat server:

    Note: Users installing on systems running Solaris or Linux see an additional screen that prompts for the name of the user under which Tomcat and Apache runs. This user cannot be root. Create the user account manually; the installation program does not create it for you. The Tomcat user must have all privileges (rwa) for the log directories.

  9. Select Yes if you want to enable the Web Agent.
  10. Select Yes if you want SPS to act as a Federation Gateway.
  11. Review the Configuration Summary
  12. Click Install.

    SPS is configured and the configuration files are installed.

  13. Click Done to exit the wizard.
  14. Start the SiteMinder Secure Proxy and SiteMinder proxy engine services.

Note: If you run the Configuration Wizard again, SSL must be reinitialized.