IBM Support

RMI / IIOP Interoperability: A Liberty Server Sample with Security

White Papers


Abstract

The InteropV9 enterprise application EAR file is a JEE application that performs an RMI/IIOP
call from one platform to another under different security scenarios. This can be useful for
diagnosing setup or run-time problems, and for understanding how to configure Liberty to
perform remote invocations across platforms. The scenarios covered in this paper involve the
InteropV9 application deployed on a Liberty application server on Windows platform calling
another instance of the InteropV9 application deployed on a Liberty application server running
on the z/OS platform. The InteropV9 application includes a servlet calling a remote stateless
session bean. In each of the scenarios, the CSIv2 security settings are modified to illustrate
different approaches to performing a secure remote EJB call.

The scenarios covered in this document include:
No Security
• No SSL and No Authentication

CSIv2 Transport Layer
• Securing the transport with SSL

CSIv2 Attribute Layer / CSIv2 Authentication Layer
• Identity Assertion – Trust with LTPA
• Identity Assertion – Trust with Basic Authentication (GSSUP)

CSIv2 Attribute Layer / CSIv2 Transport Layer
• Identity Assertion – Client Certificate Authentication

[{"Business Unit":{"code":"BU053","label":"Cloud & Data Platform"},"Product":{"code":"SSD28V","label":"WebSphere Application Server Liberty Core"},"Component":"","Platform":[{"code":"PF033","label":"Windows"},{"code":"PF035","label":"z\/OS"}],"Version":"All Versions","Edition":"","Line of Business":{"code":"LOB45","label":"Automation"}}]

Document Information

Modified date:
27 February 2019

UID

ibm10872796