To Configure a Resource Offering for Bootstrapping

Only one resource offering is allowed for bootstrapping; by default, this offering contains information regarding the Discovery Service. If a resource offering is already defined, you can modify the attributes by clicking on its name. You may also check the box next to the name and delete the existing resource offering. To configure a new resource offering, you would then click New.

  1. Click New to display the new mapper attributes or click on the name of a configured mapper to modify it.
  2. Enter an optional description for the resource offering.
  3. Provide values for the Service Instance attributes based on the following information:
    Service Type

    This attribute takes as a value a URI that defines the type of service the resource offering implements. For example, urn:liberty:disco:2003-08.


    Note – It is recommended that this URI be the same as the targetNamespace URI of the abstract WSDL description for the service.


    Provider ID

    This attribute takes as a value a URI of the provider of the service instance. For example, http://daiquiri.sun.com:80/amserver/Liberty/disco.

    Service Description

    This attribute defines a running web service at a distinct protocol endpoint. Information about service instances needs to be communicated in various contexts. For example, the Discovery Service defined in this specification is an identity service which provides an enumeration of resource offerings (each of which includes a service instance description). See To Configure a Service Description.

  4. Provide values for the Resource Offering Options attributes based on the following information:
    Options

    Check this box if the service has no options available for the resource offering. Options provide hints to a potential requester whether certain data or operations may be available with a particular resource offering. For example, an option may be provided stating that home contact information is available.

    Option List

    This attribute contains a list of options for the service instance. The option is defined as a URI. The set of possible URIs are generally standardized by the service type.

  5. Enable Directives based on the following information:
    Description ID Refs For: GenerateBearerToken

    All Supported Directives may contain a descriptive reference. If the ID Refs attribute is not enabled for a directive, the directive is taken to apply to all authentication mechanisms provided in the resource offering. If the ID Refs attribute is enabled for a directive, it MUST contain a list of ID Refs which refer to the authentication mechanism with which the directive is associated. If the attribute is present, the directive MUST be taken to apply only to those descriptions referred to in the ID Refs list. This may be useful if certain directives are incompatible with certain security mechanisms.

    Description ID Refs For: Authenticate Requestor

    All Supported Directives may contain a descriptive reference. If the ID Refs attribute is not enabled for a directive, the directive is taken to apply to all authentication mechanisms provided in the resource offering. If the ID Refs attribute is enabled for a directive, it MUST contain a list of ID Refs which refer to the authentication mechanism with which the directive is associated. If the attribute is present, the directive MUST be taken to apply only to those descriptions referred to in the ID Refs list. This may be useful if certain directives are incompatible with certain security mechanisms.

    Description ID Refs For: Encrypt ResourceID

    All Supported Directives may contain a descriptive reference. If the ID Refs attribute is not enabled for a directive, the directive is taken to apply to all authentication mechanisms provided in the resource offering. If the ID Refs attribute is enabled for a directive, it MUST contain a list of ID Refs which refer to the authentication mechanism with which the directive is associated. If the attribute is present, the directive MUST be taken to apply only to those descriptions referred to in the ID Refs list. This may be useful if certain directives are incompatible with certain security mechanisms.

    Description ID Refs For: AuthenticateSessionContext

    All Supported Directives may contain a descriptive reference. If the ID Refs attribute is not enabled for a directive, the directive is taken to apply to all authentication mechanisms provided in the resource offering. If the ID Refs attribute is enabled for a directive, it MUST contain a list of ID Refs which refer to the authentication mechanism with which the directive is associated. If the attribute is present, the directive MUST be taken to apply only to those descriptions referred to in the ID Refs list. This may be useful if certain directives are incompatible with certain security mechanisms.

    Description ID Refs For: Authorize Requester

    All Supported Directives may contain a descriptive reference. If the ID Refs attribute is not enabled for a directive, the directive is taken to apply to all authentication mechanisms provided in the resource offering. If the ID Refs attribute is enabled for a directive, it MUST contain a list of ID Refs which refer to the authentication mechanism with which the directive is associated. If the attribute is present, the directive MUST be taken to apply only to those descriptions referred to in the ID Refs list. This may be useful if certain directives are incompatible with certain security mechanisms.

  6. Click Save to complete the configuration.
  7. Click Save on the Discovery Service page to complete the service configuration.