Before specifying additional properties, specify a value in the Token consumer name, the Token consumer class name, and the Value type local name fields.
This class must implement the com.ibm.wsspi.wssecurity.token.TokenConsumerComponent interface.
On the application level, when the security token is not specified in the deployment descriptor, the Part reference field is not displayed.
| Binding name | Cell level, server level, or application level | Path |
|---|---|---|
| Default consumer binding | Cell level |
|
| Default consumer binding | Server level | Click Servers > Application servers > server_name. Under Security, click Web services: Default bindings for Web services security. Under Additional properties, click Trust anchors. |
| Binding name | Cell level, server level, or application level | Path |
|---|---|---|
| Default consumer binding | Cell level |
|
| Default consumer binding | Server level |
|
| Binding name | Cell level, server level, or application level | Path |
|---|---|---|
| Default consumer binding | Cell level |
|
| Default consumer binding | Server level |
|
When you select a trusted ID evaluator reference, you must configure the trusted ID evaluators before setting the token consumer.
The Trusted ID evaluator field is displayed in the default binding configuration and the application server binding configuration.
This option is displayed on the cell, server, and application levels. This option is valid only when the type of incorporated token is the user name token.
This option is displayed on the cell, server, and application levels. This option is valid only when the type of incorporated token is the user name token.
When you specify a custom value type for custom tokens, you can specify the local name and the URI of the Quality name (QName) of the value type. For example, you might specify Custom for the local name and http://www.ibm.com/custom for the URI.
When you specify the token consumer for the user name token or the X.509 certificate security token, you do not need to specify this option. If you want to specify another token, specify the URI of the QName for the value type.
WebSphere Application Server provides the following predefined value type URI for the LTPA token: http://www.ibm.com/websphere/appserver/tokentype/5.0.2