If your installation uses global security, you must run
WebSphere Application Server as a user with the appropriate roles.
You can employ one of the following options to configure WebSphere
Application Server to run if WebSphere global security is enabled:
-
Create a new user with the necessary roles, and run WebSphere
Application Server as that user. If a user already exists to run
WebSphere Application Server, assign the necessary roles to that
user.
Important:
Ensure
that you start WebSphere Application Server as this user. Some WebSphere
processes may fail if you start WebSphere Application Server as
a different user while global security is enabled.
In
a secure environment, it is recommended that you employ this option.
-
Configure the EVERYONE group with the necessary roles.
To create a new WebSphere Application Server user:
-
In the WebSphere Administrative Console navigation tree,
click
Environment
>
Naming
>
CORBA Naming Service Users
,
and then in the right pane, click
Add
.
-
In
Roles
, select all the roles.
-
Under Search and Select Users, select the User Realm.
-
In the search box, type the search string and click
Search
.
Note:
To retrieve all users, type an asterisk (*).
-
From the Available text box, select the required users and
click the right arrow to add them to the Mapped to role box.
-
Click
Save directly to master configuration
.
To configure an existing WebSphere Application Server user:
-
In the WebSphere Administrative Console
navigation tree, click
Environment
>
Naming
>
CORBA Naming Service Users
,
and then in the right pane, select the user.
-
In
Roles
, select the required roles.
-
Click
OK
or
Apply
.
-
Click
Save directly to master configuration
.
To configure the EVERYONE group
-
In the WebSphere Administrative Console navigation tree,
click
Environment
>
Naming
>
CORBA Naming Service Groups
.
-
In
Roles
, select the required roles.
-
Enable
Select from special subjects
, and then from
the Special subjects list, select the
EVERYONE
group.
Note:
If the EVERYONE group is already configured, the
group will not be shown in the Special subjects list. You only need
to assign the required roles to this group if not already done so.
-
Click
OK
or
Apply
.
-
Click
Save directly to master configuration
.
|
|
|