Security: Resources for learning
Use the following links to find relevant supplemental information about Securing applications and their environment. The information resides on IBM and non-IBM Internet sites, whose sponsors control the technical accuracy of the information.
These links are provided for convenience. Often, the information is not specific to the IBM WebSphere Application Server product, but is useful all or in part for understanding the product. When possible, links are provided to technical papers and Redbooks that supplement the broad coverage of the release documentation with in-depth examinations of particular product areas.
View links to additional information about:
- Planning, business scenarios and IT architecture.
- Programming model and decisions
- Programming specifications
- Administration
Planning, business scenarios and IT architecture
- References and specifications)" src="../../reference.gif"> WebSphere Application Server Library
http://www-3.ibm.com/software/webservers/appserv/library.html
- References and specifications)" src="../../reference.gif"> WebSphere Application Server Support
http://www-3.ibm.com/software/webservers/appserv/support.html
- References and specifications)" src="../../reference.gif"> WebSphere Application Server V5 Security Redbook
http://www.redbooks.ibm.com/pubs/pdfs/redbooks/sg246573.pdfProgramming model and decisions
- Sun Java Secure Socket Extension (JSSE) documentation:
Refer to http://www-106.ibm.com/developerworks/websphere/library/techarticles/0403_yu/0403_yu.html?ca=dnp-314#IDACKF3B for information on setting up WebSphere Application Server using Sun Java Secure Socket Extension (JSSE) at runtime.
- Java Secure Socket Extension (JSSE) Documentation:
Refer to the http://www.ibm.com/developerworks/java/jdk/security/jsseDocs.zip file for the Javadoc of the application programming interfaces (APIs), JSSE Reference Guide, and JSSE samples.
- iKeyman Documentation:
Look in the http://www.ibm.com/developerworks/java/jdk/security/iKeymanDocs.zip file for the Secure Sockets Layer (SSL) Introduction and iKeyman documentation.
- Java Cryptography Extension (JCE) Documentation:
- For the Java Cryptography Architecture (JCA) spec and JCE API usage refer to the http://www.ibm.com/developerworks/java/jdk/security/jceDocs.zip file.
- For JCE sample applications refer to the http://www.ibm.com/developerworks/java/jdk/security/jceDocs.zip file.
- For Java Cryptography Architecture Reference refer to the http://www.ibm.com/developerworks/java/jdk/security/jceDocs.zip file.
- For how to implement a JCE provider refer to the http://www.ibm.com/developerworks/java/jdk/security/jceDocs.zip file.
- For the Javadoc of JCE APIs refer to the http://www.ibm.com/developerworks/java/jdk/security/jceDocs.zip file.
Programming specifications
- References and specifications)" src="../../reference.gif"> J2EE Specifications
http://java.sun.com/j2ee/download.html
- References and specifications)" src="../../reference.gif"> EJB Specifications
http://java.sun.com/products/ejb/docs.html
- References and specifications)" src="../../reference.gif"> Servlet Specifications
http://java.sun.com/products/servlet/download.html
- References and specifications)" src="../../reference.gif"> Common Secure Interoperability V2 (CSIv2) Specification
http://www.omg.org/technology/documents/corba_spec_catalog.htm#CSIv2
- Java Authentication and Authorization Service (JAAS) specification:
For programming and usage in JAAS, refer to the documentation located at http://www.ibm.com/developerworks/java/jdk/security/ and scroll down to find the JAAS documentation for your platform. This document contains the following when unpacked:
- login.html - LoginModule Developer's Guide
- api.html - Developer's Guide (JAAS JavaDoc)
- HelloWorld.tar - Sample JAAS Application
- References and specifications)" src="../../reference.gif"> Java 2 Platform, Standard Edition, v 1.4.2 API Specification
http://java.sun.com/j2se/1.4/docs/api/index.htmlAdministration
- WebSphere Application Server Version 4.0 Security Redbook: WebSphere Security Model
http://www.redbooks.ibm.com/pubs/pdfs/redbooks/sg246520.pdf?#M10.8.newlink.WebSphereSecurityModel .
- References and specifications)" src="../../reference.gif"> IBM HTTP Server Support and Documentation
http://www-3.ibm.com/software/webservers/httpservers/support.html
- References and specifications)" src="../../reference.gif"> IBM Directory Server Support and Documentation
http://www-3.ibm.com/software/network/directory/support/
- IBM Application Developer Kit Readme
- For IBM Application Developer Kit refer to {was_install_root}/java/docs/readme.devkit.ibm.html
- For IBM Application Developer Kit Installation and Configuration Readme refer to {was_install_root}/java/docs/readme.install.ibm.html
- References and specifications)" src="../../reference.gif"> IBM cryptographic hardware devices
http://www.ibm.com/security/cryptocards/html/library.shtml
- References and specifications)" src="../../reference.gif"> Supported hardware, software and APIs prerequisite Web site
http://www-3.ibm.com/software/webservers/appserv/doc/latest/prereq.html
- References and specifications)" src="../../reference.gif"> WebSphere education on demand: Enabling security best practice tutorials
http://www.ibm.com/developerworks/websphere/library/tutorials/ondemand/