[Download
]
| [Documentation Index
] | [Release Note
]
Securing a service
How to enable security on a service?
Steps
- If you want to use Username Token related security scenarios you must create user groups who are
authorized to access the service. User groups can be created from the system-default user store or an
external storage. For more details on creating user groups click
here
- If you want to provide X509 related security scenarios, add the trusted certificates to the system. For
more details click
here
- Go to the "Service Information" page of the particular service.
- Click on "Security" link under "Service Management" page.
- Select "Enable Security" as yes. This will show you a list of available security scenarios.
- Select the scenario and click on Next. Follow the steps
How to disable a security of a service?
Steps
- Go to the "Service Information" page of the particular service.
- Click on "Security" link under "Service Management" page.
- Select "Enable Security" as No. This will disable security.
Security Management

- User Management
You can add/delete users to the system default user store. Click on change password to change the
password of user
- User Store Management
External user stores can be added to the system. External user stores can be either a relational
database or a LDAP server.
- User Group Management
Create user groups using the system default user store or from external users stores. When you assign
Username Token authentication to services you must select more than
one user groups to authenticate users.
- Key Store Management
Add key stores to the system. When adding trusted certificates you can add the whole trusted
certificate store or import your certificates into a key store that is already
existing in the system.
Users can be added to the system default user store using the UI. Users can be deleted and their
passwords can be changed.

The application server can connect to external LDAP servers and JDBC user stores. When creating a
connection to external user stores all connection properties must be specified

User groups can be created from external and system-default user stores. A user group can have users from
a single user store only. Later on it can be edited to add/remove users.

Key stores can be uploaded to the server.

You also have the option of uploading the trusted certificates to an existing keystore.
