User guide

Preparation for Environment Setup
2-9
Designing a Registration Destination Entry
Design an entry in which role configuration, user information, and protection resources are to be
registered in the SSO repository.
Define the registration destination entry when creating an SSO repository.
The following table shows examples of registration destination entries:
Example
Management information Registration destination entry
Role configuration ou=Role,ou=SSO ACI,ou=interstage,o=fujitsu,dc=com
User information ou=User,ou=interstage,o=fujitsu,dc=com
Protection resource ou=Resource,ou=SSO ACI,ou=interstage,o=fujitsu,dc=com
Figure 2-2 Registration Destination Entries
In the Interstage Management Console, when the default value is specified in [Public directory] and
'Create' is selected for [Create default tree?] in creating an SSO Repository, the registration destination
entries shown in the above table are created. Samples provided by Interstage Single Sign-on for
registering role configuration and user information have been created with the registration destination
entries shown in Figure 2-2.
Examples of SSO Repository Design
Role Configuration
Example
This example shows a design of registering three roles classified by roles/organization and one role set
having two among the three roles in the following registration destination entry:
Role configuration registration destination entry: ou=Role,ou=SSO ACI,ou=interstage,o=fujitsu,dc=com
Table 2-2 Register Roles
Role/organization Role/role set name Name of role contained in the role set
All employees All employee, executives
Executive Executives -
Employee Employee -
Administration department Administration -