The WebSphere Application Server - Security training course begins with a general discussion of the three major parts of global security: administrative security, application security, and Java 2 security. You use security domains to configure cell-wide access. You then configure fine-grained security to the administrative console and configure application security by defining security constraints and security roles for a web application. You will also learn about the implications of application security by mapping special subjects and user groups to security roles.
By attending WebSphere Application Server - Security workshop, delegates will learn to:
- Describe the conceptual differences between administrative security, application security, and Java 2 security
- Configure WebSphere Application Server to limit administrative console access to specific users
- Create and configure a security domain representing the administrative security configuration and application configuration
- Configure fine-grained administrative access to specific parts of a cell
- Define security constraints and security roles for a web application
- Map special subjects and user groups to security roles
- Configure the VMM security manager feature that allows the VMM to function either with or without all of its repositories available
- Explain the differences between symmetric and asymmetric key encryption
- Describe how digital signatures are generated and validated
- Configure secure communication between a client and a server
- Explain how certificates and certificate authorities provide secure communication
- Configure SSL for the Java Database Connectivity (JDBC) connection to the database
- Configure SSL within the cell
- Create and configure cross-cell authentication between two cells
- Harden the security configuration of the application server and its environment
- Modify the performance of security features in WebSphere Application Server
- Explain the cost of security in various areas, specifically core JEE, messaging, and web services
- Perform problem determination tasks that are related to authentication, authorization, and SSL errors
- Tune the WebSphere Application Server security runtime through custom property and administrative console configuration
Experience in Java or web development with Eclipse, and a good knowledge of the following web technologies:
- HTML5
- JavaScript
- Cascading Style Sheets (CSS) 3
- Web UI frameworks, such as Dojo or jQuery
- Representational State Transfer (REST) services
- Web services
A basic knowledge of a mobile web UI framework, such as Dojo Mobile, is helpful.
This WebSphere Application Server - Security class is designed for application developers who want to use IBM Worklight to create, manage, and deploy mobile applications to Android and iOS mobile environments.
