Configuring WebSphere for SSO and exporting the LTPA key

As part of configuring SSO for Domino environments, you must configure WebSphere Application Server for SSO and export the LTPA key.

Procedure

  1. Start WebSphere Application Server.
  2. Log in to the WebSphere Application Server Integrated Solutions Console.
  3. Click Security > Global security and go to applications and infrastructure.
  4. Under Authentication, expand Web and SIP security, and then select Single sign-on.
  5. Type your domain name in the Domain name field, ensuring that you add a dot (.) before the domain name, for example, .acme.com. You must enter this domain name again in the Domino® configuration steps that follow.
  6. Ensure that the Interoperability mode settings are the same as your Domino configurations.
  7. Deselect the Web inbound security attribute propagation check box.
  8. Deselect the Set security cookies to HTTPOnly to help prevent cross-site scripting attacks checkbox.
  9. Restart all of your installed features and check that you can switch between them without needing to authenticate more than once.
  10. Log in to the WebSphere Application Server Integrated Solutions Console.
  11. Click Security > Global Security and go to applications and infrastructure.
  12. Click LTPA in the Authentication list.
  13. Enter the password used to protect the exported key in the Password and Confirm password fields.
  14. Enter the full file name of the key file to be generated in the Fully qualified key file name field.
  15. Click Export keys.