What is webseal?

IBM Tivoli Access Manager WebSEAL is a high performance, multi-threaded Web server that applies fine-grained security policy to the Tivoli Access Manager protected Web object space. WebSEAL can provide single sign-on solutions and incorporate back-end Web application server resources into its security policy.

What is mutual authentication in webseal?

When both server and client require authentication, the exchange is known as mutual authentication. Figure 6. Mutual authentication WebSEAL can enforce a high degree of security in a secure domain by requiring each client to provide proof of its identity.

What information does the webseal session/credentials Cache Store?

The WebSEAL session/credentials cache stores any type of session ID information (see the list above) plus the credential information obtained for each client. Credential information is cached to eliminate repetitive queries to the user registry database during authorization checks.

What is the Max-entries parameter in webseal?

The max-entries parameter, located in the [session] stanza of the webseald.conf configuration file, sets the maximum number of concurrent entries in the WebSEAL session/credentials cache. This value corresponds to the number of concurrent login sessions.

