+

Search Tips   |   Advanced Search

 

Displaying SPNEGO TAI properties using the wsadmin utility

 

You use the wsadmin utility to display the properties in the configuration of the Simple and Protected GSS-API Negotiation Mechanism (SPNEGO) trust association interceptor (TAI) for WAS.

 

Overview

Verify that end-user desktop browsers are configured to support SPNEGO authentication, that the SPNEGO TAI is enabled, that the JVM property is set and, that WebSphere Application Server is configured to enable the operation of the SPNEGO TAI. You use the wsadmin utility to configure the SPNEGO TAI for WebSphere Application Server:

 

Procedure

  1. Start WAS.

  2. Start the command-line utility by running the wsadmin command from the app_server_root/bin directory.

  3. At the wsadmin prompt, enter the following command:

    $AdminTask showSpnegoTAIProperties
    
    You can use the following parameters with this command:

    Option Description
    <spnId> This is an optional parameter. The service principal name (SPN) identifier for the group of custom properties that are to be displayed with this command. If you do not specify this parameter, all SPNEGO TAI custom properties are displayed.

 

Results

SPNEGO TAI properties are displayed for this WebSphere Application Server.

 

Example

Example 1

The following example displays all SPNEGO TAI properties.

wsadmin>$AdminTask showSpnegoTAIProperties com.ibm.ws.security.spnego.SPN1.filter=request-url!=noSPNEGO;request-url%=snoop com.ibm.ws.security.spnego.SPN1.hostName=central01.austin.ibm.com com.ibm.ws.security.spnego.SPN2.hostName=wssecpd.austin.ibm.com wsadmin>

Example 2

The following example displays SPNEGO TAI properties for SPN1 and host, central01.austin.ibm.com.

wsadmin>$AdminTask showSpnegoTAIProperties -interactive
Show SPNEGO TAI configuration properties.

Display SPNEGO TAI configuration properties.

Service Principal Name identifier (spnId): 1

Show SPNEGO TAI configuration properties.

F (Finish)
C (Cancel)

Select [F, C]: [F] WASX7278I: Generated command line: $AdminTask showSpnegoTAIProperties {-spnId 1}
 com.ibm.ws.security.spnego.SPN1.filter=request-url!=noSPNEGO;request-url%=snoop com.ibm.ws.security.spnego.SPN1.hostName=central01.austin.ibm.com com.ibm.ws.security.spnego.SPN1.trimUserName=true wsadmin>


 

Related tasks


Configure WAS environment to use SPNEGO

 

Related Reference


SPNEGO TAI custom configuration attributes