Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  • The JS7 - Identity Services offer local management of user accounts for authentication and authorization.
  • The Shiro Identity Service is was a built-in service available from with the JOC Cockpit
    • The Shiro Identity Service is was available for early releases of JS7.
    • The Shiro Identity Service is has been discontinued: 
      Display feature availability
      EndingWithRelease2.4.0
  • Migration tools are A migration tool is available for users who upgrade are upgrading from early JS7 2.0, 2.1 releases or who migrate are migrating from JS1 1.12, 1.13 releases.

Identity Service Type

...

  • Service Type: SHIRO
    • Management of user accounts and passwords is performed with by the JOC Cockpit.
    • The assignment of roles to user accounts is performed with by the JOC Cockpit.
    • The JOC Cockpit stores user accounts, hashed passwords and role assignments:
      • in the JS7 - Database and
      • to in the JETTY_BASE/resources/joc/shiro.ini.active file (for information purposes).
      • Users can create a copy of the shiro.ini.active file, add their modifications and submit changes by renaming the file to shiro.ini. With the next login of a user the shiro.ini file will be applied and its contents are added to the JS7 database. As a result of this operation the shiro.ini file is renamed to shiro.ini.active. A previously available shiro.ini.active file is will be renamed to shiro.ini.backup.

Identity Service Configuration

The JOC Cockpit offers provides the Manage Identity Services page for the configuration of Identity Services. This page is accessed from the user menu of an administrative account for configuration of Identity Services::

Identity Service Settings

...

  • Log Files
  • Standard Log Files
    • Identity Services log output to the JETTY_BASE/logs/joc.log file. This includes to report reporting success or failure of authentication.
    • Successful and failed authentication attempts including user accounts involved are logged to the JETTY_BASE/logs/audit.log file.
  • Debug Log Files
    • For problem analysis during setup of an Identity Service increase the log level as explained with JS7 - Log Levels and Debug Options.
    • The JETTY_BASE/logs/joc-debug.log file includes general debug output of JOC Cockpit.
    • The JETTY_BASE/logs/authentication-debug.log file includes debug output related to authentication and authorization.
    • The JETTY_BASE/logs/jetty.log file includes debug output of attempts to establish SSL connections.

...