000030330 - Manually Configure Iplanet 7 webserver magnus.conf and obj.conf

Document created by RSA Customer Support Employee on Jun 14, 2016Last modified by RSA Customer Support Employee on Apr 21, 2017
Version 2Show Document
  • View in full screen mode

Article Content

Article Number000030330
Applies ToRSA Product Set: ClearTrust
RSA Product/Service Type: Web Agent
RSA Version/Condition: 5.0 SP2
Platform: UNIX
Platform (Other): Iplanet 7 (SJSWS7)
O/S Version: Solaris 10
Product Name: Access Manager
 
IssueInstalling 5.0 agent or 5.0sp2 for Iplanet 7 webserver on Solaris 10 or 11 (SJSWS7)
When running the installer for RSA AXM Agent 5.0 SP2 for IPlanet 7.0.21 on Solaris 10 64-bit, the webserver instance directory is created and the webagent.conf file is created, however the changes to obj.conf and magnus.conf are not present.
CauseThis may be caused using older files that already have the ct_agent directives present at which point the installer advises to manually edit them.
ResolutionManually edit the magnus.conf and obj.conf files
For the magnus.conf file
below is an example of everything added by the installer to the magnus.conf file
Init fn="load-modules" funcs="ct-nsapi-init,ct-child-init,ct-pre-process,ct-post-process,ct-nsapi-user,ct-auth,ct-check-redirect,ct-nsapi-check-auth,ct-ssi-auth,nsapi-module-init" shlib="/opt/rsa-axm/agent-50-sjsw7/lib/64/libct_sjsws7_agent.so" NativeThread="no"
Init fn="ct-nsapi-init" CTAgentRoot="/opt/rsa-axm/agent-50-sjsw7/webservers/CISR021"
Init fn="ct-child-init" LateInit=yes

NOTES:
shlib="/opt/rsa-axm/agent-50-sjsw7/lib/64/libct_sjsws7_agent.so"
needs to point the customer's agent home directory
and
CTAgentRoot="/opt/rsa-axm/agent-50-sjsw7/webservers/CISR021"
needs to point to the customers "Server Common Name" in the CTAgent root
For the obj.conf file
Add the following lines, as is, after <Object name="default">
AuthTrans fn="ct-pre-process"
AuthTrans fn="basic-auth" auth-type="basic" userdb="none" userfn="ct-nsapi-user"
AuthTrans fn="ct-ssi-auth"
AuthTrans fn="ct-auth" realm="CT"
NameTrans fn="ct-check-redirect"
PathCheck fn="ct-nsapi-check-auth"
PathCheck fn="ct-post-process"
Error fn="ct-post-process"
Output fn="insert-filter" filter="aa-content"


 

Attachments

    Outcomes