6.4 Configuring WebSphere Application Server if global security is enabled

If your installation uses global security, you must run WebSphere Application Server as a user with the appropriate roles. You can employ one of the following options to configure WebSphere Application Server to run if WebSphere global security is enabled:

  • Create a new user with the necessary roles, and run WebSphere Application Server as that user. If a user already exists to run WebSphere Application Server, assign the necessary roles to that user.

    Important: Ensure that you start WebSphere Application Server as this user. Some WebSphere processes may fail if you start WebSphere Application Server as a different user while global security is enabled.

    In a secure environment, it is recommended that you employ this option.

  • Configure the EVERYONE group with the necessary roles.

To create a new WebSphere Application Server user:

  1. In the WebSphere Administrative Console navigation tree, click Environment > Naming > CORBA Naming Service Users , and then in the right pane, click Add .

  2. In Roles , select all the roles.

  3. Under Search and Select Users, select the User Realm.

  4. In the search box, type the search string and click Search .
    Note: To retrieve all users, type an asterisk (*).
  5. From the Available text box, select the required users and click the right arrow to add them to the Mapped to role box.

  6. Click Save directly to master configuration .

To configure an existing WebSphere Application Server user:

  1. In the WebSphere Administrative Console navigation tree, click Environment > Naming > CORBA Naming Service Users , and then in the right pane, select the user.

  2. In Roles , select the required roles.

  3. Click OK or Apply .

  4. Click Save directly to master configuration .

To configure the EVERYONE group

  1. In the WebSphere Administrative Console navigation tree, click Environment > Naming > CORBA Naming Service Groups .

  2. In Roles , select the required roles.

  3. Enable Select from special subjects , and then from the Special subjects list, select the EVERYONE group.

Note: If the EVERYONE group is already configured, the group will not be shown in the Special subjects list. You only need to assign the required roles to this group if not already done so.
  1. Click OK or Apply .

  2. Click Save directly to master configuration .

// Ethnio survey code removed