Anonymous_User Absent Member.
Absent Member.
220 views

OSP: Redundant installations


Hi,

the documentation lists all steps needed to install the new One
SingeSignOn Provider (together with) SSPR - but it does not provide any
information on how to make this service reliable.

Are the any "official" recomandations on how to make this important
module more reliable? Would it be nessesary to run it in a TOMCAT
cluster? Is there any need to load balance this service? If yes under
which conditions?

Would it be possibe to install both OSP ans SSPR on a JBOSS Cluster
(together with the other IDM WEB-Modules) ?

Thanks,

Thorsten


--
tschloesser
------------------------------------------------------------------------
tschloesser's Profile: https://forums.netiq.com/member.php?userid=3232
View this thread: https://forums.netiq.com/showthread.php?t=52836

Labels (1)
0 Likes
2 Replies
Anonymous_User Absent Member.
Absent Member.

Re: OSP: Redundant installations

On 02/16/2015 04:06 AM, tschloesser wrote:
>
> Hi,
>
> the documentation lists all steps needed to install the new One
> SingeSignOn Provider (together with) SSPR - but it does not provide any
> information on how to make this service reliable.
>
> Are the any "official" recomandations on how to make this important
> module more reliable? Would it be nessesary to run it in a TOMCAT
> cluster? Is there any need to load balance this service? If yes under
> which conditions?
>
> Would it be possibe to install both OSP ans SSPR on a JBOSS Cluster
> (together with the other IDM WEB-Modules) ?
>
> Thanks,
>
> Thorsten
>
>

Greetings,
You would need to have multiple Tomcat set-ups with OSP on it. In
each set-up you would use the same osp.jks file and host mappings to
them (most likely behind a load balancer). Keep in mind that you can
only every access via the one (1) value used during the install.

--

Sincerely,
Steven Williams
Lead Software Engineer
NetIQ
0 Likes
Knowledge Partner
Knowledge Partner

Re: OSP: Redundant installations

On 2/18/2015 3:24 PM, Steven Williams wrote:
> On 02/16/2015 04:06 AM, tschloesser wrote:
>>
>> Hi,
>>
>> the documentation lists all steps needed to install the new One
>> SingeSignOn Provider (together with) SSPR - but it does not provide any
>> information on how to make this service reliable.
>>
>> Are the any "official" recomandations on how to make this important
>> module more reliable? Would it be nessesary to run it in a TOMCAT
>> cluster? Is there any need to load balance this service? If yes under
>> which conditions?
>>
>> Would it be possibe to install both OSP ans SSPR on a JBOSS Cluster
>> (together with the other IDM WEB-Modules) ?
>>
>> Thanks,
>>
>> Thorsten
>>
>>

> Greetings,
> You would need to have multiple Tomcat set-ups with OSP on it. In
> each set-up you would use the same osp.jks file and host mappings to
> them (most likely behind a load balancer). Keep in mind that you can
> only every access via the one (1) value used during the install.


Can you expand on that last sentence please?

"you can only every access via the one (1) value used during the install."

I am not sure I understand what you mean? I had wondered when you
suggested that the OSP config could be copied, if that meant the OSP
instance on the second box is still referencing the first OSP box?

Or would you edit the file, so that the hostname is now the second OSP
boxes name?

Can SSPR use OSP on another server to redirect to SSPR on the second
server?


0 Likes
The opinions expressed above are the personal opinions of the authors, not of Micro Focus. By using this site, you accept the Terms of Use and Rules of Participation. Certain versions of content ("Material") accessible here may contain branding from Hewlett-Packard Company (now HP Inc.) and Hewlett Packard Enterprise Company. As of September 1, 2017, the Material is now offered by Micro Focus, a separately owned and operated company. Any reference to the HP and Hewlett Packard Enterprise/HPE marks is historical in nature, and the HP and Hewlett Packard Enterprise/HPE marks are the property of their respective owners.