Create a trusted user account in TAM
OverviewTAM TAIs require the creation of a trusted user account in the shared LDAP user registry. This is the ID and password that WebSEAL uses to identify itself to WAS. To prevent potential vulnerabilities, do not use sec_master as the trusted user account and ensure the password you use is unique and generated randomly. The trusted user account should be used for the TAI or TAI++ only.
Use either the TAM pdadmin command line utility or Web Portal Manager to create the trusted user. For example, from the pdadmin command line:
Examplepdadmin> user create webseal_userid webseal_userid_DN firstname surname password pdadmin> user modify webseal_userid account-valid yes
What to do nextConfigure WebSEAL for use with WAS or Configure TAM plug-in for Web servers for use with WAS
Single signon using WebSEAL or the TAM plug-in for Web servers