Configuring Web services security using JAX-RPC at the platform level

In the platform configuration, general properties and additional properties can be specified, and the default binding is included. We can configure security for Web services at a platform level with a variety of tasks including configuring key locators, trust anchors, and the collection certificate at the generator, consumer binding, and sever levels.

 

Before you begin

Besides the application-level constraints, there is a cell-level and server-level Web services security (WSS) configuration called a platform-level configuration:

Therefore, binding configuration files can be specified at these levels: application, server, and cell. Each binding configuration overrides the next higher one. For any deployed application, the nearest configuration binding is applied. The visibility scope of the binding depends on where the file is located. If the binding is defined in an application, its visibility is scoped to that particular application. If it is located at the server level, the visibility scope is all applications that are deployed on that server. For Network Deployment, if it is located at the cell level, the visibility scope is all applications deployed on all servers of the cell.

 

About this task

To ensure Web services security at the platform level, we can configure:

 

Procedure

 

Results

By completing these steps, you have configured Web services security at the platform level.

 

See also


Configuring a nonce on the server or cell level
Distributing nonce caching to servers in a cluster
Configuring the key locator using JAX-RPC for the generator binding on the application level
Configuring the key locator for the consumer binding on the application level
Configuring the key locator on the server or cell level
Configuring trust anchors for the generator binding on the application level
Configuring trust anchors for the consumer binding on the application level
Configuring trust anchors on the server or cell level
Configuring the collection certificate store for the generator binding on the application level
Configuring the collection certificate store for the consumer binding on the application level
Configuring the collection certificate on the server or cell level
Configuring trusted ID evaluators on the server or cell level
Related tasks
Securing Web services applications using JAX-RPC at the message level