Broker 10.15 | webMethods Broker Documentation | Administering webMethods Broker | Managing Broker Security | Access Control Lists | Configuring Access Control Lists | About Configuring Client Group ACLs | Registering Authenticator Names
 
Registering Authenticator Names
Use the following procedure to register authenticator names on a client group ACL.
*To register authenticator names on a client group ACL
1. In My webMethods: Messaging > Broker Server s > Client Groups.
2. Select the Broker Server and Broker of the client group whose ACL you want to configure.
3. Click Go. If the client group does not appear in the list, use the Search tab to locate it (see Searching for Client Groups).
4. Under Client Groups, click the client group whose ACL you want to configure.
View the Configure page for the client group. If the Access Control status reads Broker Administrator identity required, you need to configure the Broker user interface component identity settings before continuing. See Configuring a Basic Authentication Identity for the Broker User Interface Component or Configuring an SSL Identity for the Broker User Interface Component for instructions.
5. Click the ACL tab for the client group.
6. Click Add Authenticator Names.
7. To add an authenticator name for basic authentication:
Click the Enter Authenticator Name tab, type the alias of the authenticator in the Authenticator Name box, and click Add. Repeat for each authenticator alias you want to add.
8. To add an authenticator name for SSL authentication, do one of the following:
*To add an authenticator name from the Broker Server keystore:
Click the Select Authenticator Name tab, check the Authenticator Names for issuers for whom to grant permission, and click Add.
*To add an authenticator name from a different keystore:
Click the Enter Authenticator Name tab, type the DN of the authenticator in the Authenticator Name box, and click Add. Repeat for each authenticator DN you want to add.
The status message Authenticator name(s) added to access control list appears on the Client Group Details page.
The ACL is automatically enabled after you add entries; no additional actions are needed.
Note:
If you do not specify which clients are granted permissions through a user name ACL, any user from basic authentication alias or a SSL DN from an issuer in the authenticator name list has administrative access to the Broker Server.