Using the isamcfg tool

The isamcfg tool is deprecated. The configuration API invoked on a reverse proxy is used instead.

Various features of Advanced Access Control can be configured with the isamcfg tool. The isamcfg tool helps automate configuration of the following software and appliances:

  • WebSEAL
  • Verify Identity Access appliance
  • Verify Identity Access for Web appliance
  • Verify Identity Access for Web software version
  • Security Web Gateway appliance

The tools helps with:

  • Creating a junction that points to the Advanced Access Control runtime endpoint.
  • Creating a Verify Identity Access POP used by Advanced Access Control to attach a policy.
  • Configuring the instance of the appliance that supplies the web function, such as WebSEAL, with the instance of the appliance that provides the authorization server for Advanced Access Control.
  • Configuring SSL, sets up key stores, trust stores, and authentication configuration between Advanced Access Control and the web function.
  • Configuring a set of default obligation-to-URL mappings for the authentication service.
  • Modifying the Verify Identity Access appliance authentication configuration to support the authentication service.
Note: If you are upgrading, see the installation and configuration instructions in the IBM Knowledge Center.

If you are upgrading from a previous version of the product, run the isamcfg tool to unconfigure the current version. Then, run the isamcfg tool to configure the new version.