Siteminder R12 Step By Step Install of Policy Server and WAMUI with Jboss on Windows

Document ID : KB000053566
Last Modified Date : 14/02/2018
Show Technical Document Details

Description

Provides basic steps to install R12 Policy Server and WAMUI Windows

Solution

Policy Server / WAMUI Install with Jboss

  • Install Sun-jre-1.5 which should be located in the Thirdparty-tools folder

    1. Accept defaults

  • Set up Jboss should be found in Thirdparty-tools folder. No real config is required either that to place on top level of the C: Drive

  • Install the Policy Server executable ca-ps-12.0-sp1-cr00x-win32.exe

    1. Chose your install directory

    2. Select your FIPS MODE

    3. Select only Web Server(s) When selecting features

    4. Install

  • Create Policy Store Account Launch SQL Management Studio

    1. Login using either Windows or SQL Authentication

    2. In the left pane Click on Security >> New>>Login

    3. Create a new login smpssa (You can choose whatever name you want) using SQL Authentication and set a password

    4. Clear enforce password Click OK

  • Create The Policy Store Database

    1. In the left pane Click on Database >> New Database

    2. Name the Db smpolicystore ( You can choose whatever name you want)

    3. In the new Db window in the Database Name enter smpolicystore and Database owner smpssa

    4. In the left pain expand Security \Logins right click on smpssa and go to properties

    5. In the default Database at the bottom type in smpolicystore click OK

  • Create ODBC Connection

    1. Go to Start >> Programs >> Admin Tools>>Data Sources (ODBC)

    2. On the System DSN Tab add data source for the policy store

    3. Data Source Name = Siteminder Policy Store / Server (Your server name) / Database name =smpolicystore

    4. Go to Advance Tab set default user name to smpssa click OK

  • Create a Siteminder Schema

    1. Exit the SQL Management Studio

    2. Relaunch SQL Management Studio logging in as the account your created (smpssa) SQL Auth

    3. Connect to the new database you created

    4. Go to Open >> File from the top of the window

    5. Open the file C:\Program Files\CA\siteminder\db\SQL\sm_mssql_ps.sql

    6. Click Execute

    7. Repeat Step e: for C:\Program Files\CA\siteminder\xps\db\ SQLServer.sql

    8. Click Execute

  • Import Default Policy Store Object and Policy Store Definitions into the Policy Server

    1. Config Policy Store ODBC by opening the Policy Server Management Console

    2. Go to the Data tab at the top Policy Server should already be select change Storage to ODBC

    3. Enter in Data Source Information >> Siteminder Policy Store

    4. User Name >> smpssa and the password you selected for that account.

    5. Apply and test the connection

    6. Copy smreg.exe from the location where the install media is to C:\Program Files\CA\siteminder\bin

    7. Run smreg -su (yourpassword)

    8. Open a command window and navigate to C:\siteminderhome\db\smdif and type the following smobjimport -ismpolicy.smdif -dSiteminder -w(yourpassword) -v (no space between switched I -d -w)

    9. In the same command window type the following

      XPSDDInstall "%nete_ps_root% \xps\dd\smobjects.xdd"
      XPSDDInstall "%nete_ps_root% \xps\dd\epmobjects.xdd"
      XPSDDInstall "%nete_ps_root% \xps\dd\seccat.xdd"
      NOTE: %nete_ps_root% = C:\Program Files\CA\siteminder

  • Verify Policy Server Install

    1. Launch the Policy Server Management Console

    2. Click on Start if not already started.

    3. Check that the log smps.log has data going to it. Log is located C:\Program Files\CA\siteminder\logs

    4. Check CA_Siteminder_policy_server_r12_SP1_installlog.log to see if there were any errors during install

  • Create Object Store user Account in SQL Management Studio

    1. Login using either Windows or SQL Authentication

    2. In the left pane Click on Security >> New>>Login

    3. Create a new login storeadmin (You can choose whatever name you want) using SQL Authentication and set a password

    4. Clear enforce password Click OK

  • Create The Object Store Database

    1. In the left pane Click on Database >> New Database

    2. Name the Db objectstore ( You can choose whatever name you want)

    3. In the new Db window in the Database Name enter objectstore and Database owner storeadmin

    4. In the left pain expand Security \Logins right click on storeadmin and go to properties

    5. In the default Database at the bottom type in objectstore click OK

  • Configuring Directory Configuration Template

    1. Navigate to the location of the WAMUI folder create when you unzipped the software and find DirectoryConfigurationSamples

    2. Copy directory.xml file from (the folder that represents your Directory type) to c:\

    3. Open in a notepad and find "##DISABLED_STATE" and replace ##DISABLED_STATE with audio leaving the quotes removing ##

    4. find "##PASSWORD_DATA" and replace ##PASSWORD_DATA with jpegphoto leaving the quotes removing ##

    5. Save the file and exit.

  • Install WAMUI executable wamui-12.0-sp1-cr00x-win32.exe

    1. Clear the IAM Report Server check box

    2. Enter the required application server (Jboss , Websphere, ...)

    3. Select the JDK

    4. Use the objectstore Db data created in step 12

    5. Use the LDAP information for super admin

    6. Select the appropriate directory.xml file for your environment.

    7. Install

  • Start the Application Server ( Jboss)

    1. Start >> Programs>> CA>> IAM Suite >> Siteminder WAM >>Start Task Engine

    2. Start >> Programs>> CA>> IAM Suite >> Siteminder WAM >> Siteminder Administrative User Interface

  • Run xpsregclient (pick a name) -adminui -su

    1. Once you have registered the client log in as the super admin you created

    2. Start >> Programs>> CA>> IAM Suite >> Siteminder WAM >> Siteminder Administrative User Interface

    3. Go to the Administration Tab click on UI below the tab to the left to expand

    4. Click on Register Administration UI Server

    5. Enter the information Name, Policy Server Host, The Port is default, Client Name (Name you picked from xps registration) and the Password you were prompted for at xpsregclient command.