Configure a reverse proxy and Advanced Access Control to recognize OAuth

Enable Advanced Access Control with the ISAM administration console, then configure a reverse proxy server to connect to the Connections server. Finally, configure the Advanced Access Control module and reverse proxy server to recognize OAuth.

About this task

The Advanced Access Control module, a feature HCL Security Manager (ISAM), is required for this environment.

Procedure

  1. From the ISAM administration console, ensure that there is an option called Secure Access Control. If not, check Licensing and Activation to verify that Advanced Access Control is enabled.
  2. Configure a Reverse Proxy (WebSEAL) to connect to the Connections server. See Enabling single sign on for HCL Security Access Manager for details on how to setup SSO between WebSEAL and the Connections server and how to properly set up the junctions needed for the mobile app and other components.
  3. Configure the Advanced Access Control module and Reverse Proxy to recognize OAuth using the isamcfg tool. The isamcfg tool is used to enable API protection on your reverse proxy junction. See Using the isamcfg tool for more information.