Security: Resources for learning
Use the following links to find relevant supplemental information about Securing applications and their environment. The information resides on IBM and non-IBM Internet sites, whose sponsors control the technical accuracy of the information.
These links are provided for convenience. Often, the information is not specific to the IBM WAS product, but is useful all or in part for understanding the product. When possible, links are provided to technical papers and Redbooks that supplement the broad coverage of the release documentation with in-depth examinations of particular product areas.
View links to additional information about...
- Planning, business scenarios and IT architecture.
- Programming model and decisions
- Programming specifications
- Administration
Planning, business scenarios and IT architecture
Programming model and decisions
- JSSE Documentation.
Refer to $WAS_HOME/web/docs/jsse/jssedocs.jar for the Javadoc of the APIs.
- For other JSSE information refer to $WAS_HOME/web/docs/jsse/API_users_guide.html and $WAS_HOME/web/docs/jsse/readme.jsse.ibm.html.
- For sample JSSE applications refer to $WAS_HOME/web/docs/jsse/samplejsse.jar.
- iKeyman Documentation.
Look in {was_$WAS_HOME}/web/docs/ikeyman/ikmuserguide.pdf for the SSL Introduction and iKeyman.
- JCE Documentation.
- For the JCA spec and JCE API usage refer to $WAS_HOME/web/docs/jce/xyz_api_users_guide.html.
- For JCE sample applications refer to $WAS_HOME/web/docs/jce/SampleJCE.jar.
- For Java Cryptography Architecture Reference refer to $WAS_HOME/web/docs/jce/xyz_CryptoSpec.html.
- For how to implement a JCE provider refer to $WAS_HOME/web/docs/jce/xyz_HowToImplAProvider.html.
- For the javadoc of JCE APIs refer to $WAS_HOME/web/docs/jce/jcedocs.jar.
- For overview of IBM JCE refer to $WAS_HOME/web/docs/jce/readme.jce.ibm.html.
- Application Assembly Tool (AAT) Documentation.
Refer to {was_$WAS_HOME}/web/docs/aat/en/index.html for AAT documentation. This can help when securing J2EE enterprise applications.
- IBM SDK for z/OS, Java 2 Technology Edition, Version 1.4
- Refer to Java 2 Security check permission algorithm .
Programming specifications
- J2EE Specifications
- EJB Specifications
- Servlet Specifications
- CSIv2 Specification
- JAAS Specification
For programming and usage in JAAS, refer to the specification located at {was_$WAS_HOME}/web/docs/jaas/JaasDocs.jar. This document contains the following when unpacked:
- login
- api.html - Developer's Guide JAAS
- HelloWorld.tar - Sample JAAS
- JavaTM 2 Platform, Standard Edition, v 1.4.2 API Specification
Administration
- WAS Version 4.0 Security Redbook: WebSphere Security Model .
- IBM HTTP Server Support and Documentation
- IBM Directory Server Support and Documentation
- IBM cryptographic hardware devices
- Supported hardware, software and APIs prerequisite Web site