EntireX security under Linux

Learn about the EntireX security under Linux through overviews of the functionality and components of EntireX Security. The location where Broker Kernel is installed determines the functionality made available for EntireX Security.

Note: Setting up EntireX Security is described under Setting up EntireX security under Linux.

Functionality of EntireX security

The following table lists the security functionality available with EntireX Security running Broker Kernel under the respective operating system.

Table 1. Functions in EntireX security
Security Functionality Linux Comment
Authentication of user Yes Verify broker user ID and broker password sent by an application to the broker. Under z/OS the broker verifies a long broker password as a RACF password phrase.
User password change No  
LDAP authentication Yes Authenticate using LDAP repository.
Trusted user ID No Trusted computing base, avoiding plain text password.
Verified client user ID No Provide verified identity of client to server.
Authorization of client request No  
Authorization of server register No  
Authorize IP connection No  
Authorization rules Yes An authorization rule is used to perform access checks for authenticated user IDs against lists of services defined within the rule. This feature is available on z/OS, Linux and Windows using EntireX Security on these platforms. Authorization rules can be stored in the Broker attribute file or in an LDAP repository. For more information, see Authorization rules.
SSL/TLS Yes Industry standard encryption mechanism. For more information, see SSL/TLS, HTTP(S), and certificates with EntireX.
Using SSL Certificates for Authentication No For more information, see Using SSL certificates for authentication.

The broker acts as an agent to make the creation and operation of client/server applications simpler and more effective. Any number of server applications can be built for use by any number of clients. EntireX Security allows you to protect your server applications and clients independently. Clients and servers are authenticated by user ID and password on their first contact with the system.

EntireX security components

This diagram illustrates the location where the broker kernel must be installed and where the broker stubs can be installed. It also depicts the location of the security components of the kernel and stubs of broker.

EntireX security components