Eon Version 1.0 (J2EE) on Solaris 9 manual Partner Authentication Agent Configuration

Page 5

Partner Authentication Agent Configuration

Before You Begin

This section provides instructions for integrating the partners’ product with RSA SecurID Authentication. This document is not intended to suggest optimum installations or configurations.

It is assumed that the reader has both working knowledge of all products involved, and the ability to perform the tasks outlined in this section. Administrators should have access to the product documentation for all products in order to install the required components.

All vendor products/components must be installed and working prior to the integration. Perform the necessary tests to confirm that this is true before proceeding.

Documenting the Solution

Administrative or Installation Software required to configure product

Weblogic 8.1

Oracle Version 9.2.0.1.0

Basic steps required to enable RSA SecurID Authentication.

Bank-Flexhas the capability of authenticating the user depending on the user type (Actor Type). For the purpose of this document, we have defined two types of users, ‘IBUser’ and ‘IBSpecialUser’. The figure below shows users and their actor types assumed for this document.

USER_LOGON_ID

ACTOR_TYPE

jlibman

IBUser

jwright

IBUser

User1

IBSpecialUser

User2

IBSpecialUser

User3

IBSpecialUser

Bank-FlexAuthentication Process

Bank-Flexcan be configured to invoke a specific Authentication Implementation for a user depending upon Actor Type. The settings in Bank-FlexPlatform security properties file named “IFrameSecurity.properties” specifies which authentication implementation needs to be invoked for which type of user (Actor Type).

Example of Bank-FlexAuthentication Process

In Bank-Flex Internet banking application, users with actor type IBSpecialUser are being authenticated against RSA Authentication Manager, and users with IBUser actor type are being authenticated against Bank-Flexbuilt in database authentication. If the user has any other actor type, then the authentication is against the default implementation, which is currently set to Bank-Flexbuilt-in database authentication.

The information in IFrameSecurity.properties would be on the following lines:

IBUser : Bank-Flexinbuilt Database Authentication

IBSpecialUser : RSA Authentication

Any Other User : Bank-Flexinbuilt Database Authentication

5

Image 5
Contents Product Information Partner InformationPartner Integration Overview Solution SummaryBank-FlexVersion 1.0 J2EE on Solaris System Architecture Product RequirementsBank-FlexVersion 1.0 J2EE on Windows Server Agent Host Configuration Jlibman IBUser Jwright User1 IBSpecialUser User2 User3 Partner Authentication Agent ConfigurationBasic steps required to enable RSA SecurID Authentication Any Other User RSA Authentication Screen 1 Login Screen 2 System Generated PIN Login Screen ExamplesScreen 3 User Defined PIN Screen 4 User Selectable PIN Screen 5 Next Tokencode Screen 6 User Authenticated Additional Functionality Certification ChecklistMandatory Functionality RSA Native Protocol Radius Protocol