Novell Access Manager 3.1 SP3 Installation Guide Contents
Total Page:16
File Type:pdf, Size:1020Kb
AUTHORIZED DOCUMENTATION Installation Guide Novell® Access Manager 3.1 SP3 February 02, 2011 www.novell.com Legal Notices Novell, Inc., makes no representations or warranties with respect to the contents or use of this documentation, and specifically disclaims any express or implied warranties of merchantability or fitness for any particular purpose. Further, Novell, Inc., reserves the right to revise this publication and to make changes to its content, at any time, without obligation to notify any person or entity of such revisions or changes. Further, Novell, Inc., makes no representations or warranties with respect to any software, and specifically disclaims any express or implied warranties of merchantability or fitness for any particular purpose. Further, Novell, Inc., reserves the right to make changes to any and all parts of Novell software, at any time, without any obligation to notify any person or entity of such changes. Any products or technical information provided under this Agreement may be subject to U.S. export controls and the trade laws of other countries. You agree to comply with all export control regulations and to obtain any required licenses or classification to export, re-export or import deliverables. You agree not to export or re-export to entities on the current U.S. export exclusion lists or to any embargoed or terrorist countries as specified in the U.S. export laws. You agree to not use deliverables for prohibited nuclear, missile, or chemical biological weaponry end uses. See the Novell International Trade Services Web page (http://www.novell.com/info/exports/) for more information on exporting Novell software. Novell assumes no responsibility for your failure to obtain any necessary export approvals. Copyright © 2007-2011 Novell, Inc. All rights reserved. No part of this publication may be reproduced, photocopied, stored on a retrieval system, or transmitted without the express written consent of the publisher. Novell, Inc. 404 Wyman Street, Suite 500 Waltham, MA 02451 U.S.A. www.novell.com Online Documentation: To access the latest online documentation for this and other Novell products, see the Novell Documentation Web page (http://www.novell.com/documentation). Novell Trademarks For Novell trademarks, see the Novell Trademark and Service Mark list (http://www.novell.com/company/legal/ trademarks/tmlist.html). Third-Party Materials All third-party trademarks are the property of their respective owners. 4 Novell Access Manager 3.1 SP3 Installation Guide Contents About This Guide 11 1 What’s New in Access Manager 3.1 SP3 13 1.1 Identity Server Enhancements . 13 1.2 Access Gateway Enhancements . 14 1.3 Administration Console Enhancements . 14 1.4 NAT Support . 15 1.5 LDAP Rebind . 15 2 Novell Access Manager Product Overview 17 2.1 How Access Manager Solves Business Challenges . 17 2.1.1 Protecting Resources While Providing Access . 18 2.1.2 Managing Passwords with Single Sign-On . 19 2.1.3 Enforcing Business Policies. 20 2.1.4 Sharing Identity Information. 21 2.1.5 Protecting Identity Information . 23 2.1.6 Complying with Regulations . 24 2.2 How Access Manager Works . 25 2.2.1 Authentication . 25 2.2.2 Authorization . 26 2.2.3 Identity Injection. 26 2.2.4 Identity Federation . 26 2.2.5 SSL Renegotiation. 27 2.3 Access Manager Devices and Their Features . 27 2.3.1 Administration Console . 28 2.3.2 Identity Servers . 28 2.3.3 Access Gateways . 30 2.3.4 SSL VPN . 31 2.3.5 J2EE Agents . 31 2.3.6 Policies . 31 2.3.7 Certificate Management. 32 2.3.8 Auditing and Logging . 32 2.3.9 Embedded Service Provider . 32 2.3.10 The User Portal Application . 33 2.3.11 Language Support . 33 3 Installation Requirements 35 3.1 Recommended Installation Scenarios . 35 3.1.1 Basic Setup . 36 3.1.2 High Availability Configuration with Load Balancing . 37 3.2 Hardware Platform Requirements . 37 3.3 Network Requirements. 38 3.4 Administration Console Requirements. 39 3.4.1 Linux Requirements. 39 3.4.2 Windows Requirements. 40 3.4.3 Browser Support . 41 3.5 Identity Server Requirements. 41 3.5.1 Linux Requirements. 41 Contents 5 3.5.2 Windows Requirements. 42 3.6 Access Gateway Requirements . 42 3.6.1 Access Gateway Appliance Requirements . 43 3.6.2 Linux Access Gateway Service Requirements . 43 3.6.3 Windows Access Gateway Service Requirements . 44 3.6.4 Client Access Requirements . 44 3.6.5 Access Gateway Feature Comparison . 44 3.7 SSL VPN Requirements. 47 3.7.1 Windows Client Limitations . 48 3.8 Virtual Machine Requirements . 48 3.8.1 Keeping Time Synchronized on the Access Manager Devices . 48 3.8.2 How Many Virtual Machines Per Physical Machine. 49 3.8.3 Which Network Adapter to be used for VMWare ESX. 49 4 Installing the Access Manager Administration Console 51 4.1 Installation Procedures. 51 4.1.1 Installing on Linux . 51 4.1.2 Installing on Windows . 54 4.2 Configuring the Administration Console Firewall . 56 4.2.1 Linux Administration Console . 56 4.2.2 Windows Administration Console . 57 4.3 Logging In to the Administration Console . 57 4.4 Enabling the Administration Console for Multiple Network Interface Cards. 59 4.5 Administration Console Conventions . 60 5 Installing the Novell Identity Server 61 5.1 Prerequisites . 61 5.2 Installing on Linux . ..