Beruflich Dokumente
Kultur Dokumente
SAP EP ADMINISTRATION
SAP EP Basics
Content Administration
Administration Activities
Portal Security
SAP AG 2002
Portal Security
SAP AG 2002
Authorization on the portal can be implemented using three techniques:
• Permissions model
• Security zone concept
• AuthRequirement property
SAP AG 2002
SAP AG 2002
User Management Engine (UME):
SAP AG 2002
SAP AG 2002
SAP AG 2002
SAP AG 2002
SAP AG 2002
Limitations When Using LDAP as a UME Data Store
• The user used to connect the UME to the LDAP must have appropriate
authorizations in the LDAP for read/write access.
• The distinguished names of the users and groups should not exceed 240
characters.
• The UME should not retrieve data from LDAP for Everyone, Authenticated Users,
and Anonymous Users. This can be resolved during the UME configuration by
configuring Unique Names of Blocked Groups.
• Similarly, you must configure the Unique Names of Blocked Users to prevent the
UME from accessing duplicate users from the LDAP directory.
• You can assign users and groups to the LDAP groups only if those users and
groups exist in the LDAP. However, you can assign LDAP users and groups to a
group in the portal database.
• You cannot search for locked users.
• If the LDAP uses a deep hierarchy, you cannot assign users or members to a
different group using the UME tool.
SAP AG 2002
SAP AG 2002
SAP AG 2002
SAP AG 2002
SAP AG 2002
SAP AG 2002
Implementing SSL on the J2EE
Engine
Configuring the SSL on the J2EE engine consists of two main steps: generating
the key pair on each server of the J2EE engine and assigning the keys to a
specific SSL port.
Following are the detailed steps involved in enabling the SSL on the J2EE engine:
SAP AG 2002
SAP AG 2002
SAP AG 2002
SAP AG 2002
SAP AG 2002
SAP AG 2002
SAP AG 2002
SAP AG 2002
SAP AG 2002
SAP AG 2002
SAP AG 2002
SAP AG 2002
SAP AG 2002
SAP AG 2002
SAP AG 2002
SAP AG 2002