The security constraints or bindings are defined using the application assembly process before the application is installed. WebSphere Application Server provides assembly tools to assemble your application.
If the security constraints are defined in the application, you must either define the corresponding binding information or select the Use defaults option on this panel and use the default binding information for the cell or server level. The default binding that is provided by WebSphere Application Server is a sample. Do not use this sample in a production environment without modifying the configuration. The security constraints define what is signed or encrypted in the Web services security message. The bindings define how to enforce the requirements.
| Information type | Required or optional |
|---|---|
| Signing information | Required |
| Key information | Required |
| Token consumer | Required |
| Key locators | Optional |
| Collection certificate store | Optional |
| Trust anchors | Optional |
| Properties | Optional |
| Information type | Required or optional |
|---|---|
| Encryption information | Required |
| Key information | Required |
| Token consumer | Required |
| Key locators | Optional |
| Collection certificate store | Optional |
| Trust anchors | Optional |
| Properties | Optional |
| Information type | Required or optional |
|---|---|
| Token consumer | Required |
| Collection certificate store | Optional |
| Trust anchors | Optional |
| Properties | Optional |
If you select this option, WebSphere Application Server checks for binding information on the server level. If the binding information does not exist on the server level, the application server checks the cell level.
If you select this option, WebSphere Application Server checks for binding information on the server level.