Enabling Authentication and RBAC for Administrator Logins

Role based access control (RBAC) for administrators is always performed by Unwired Server: Sybase Control Center automatically delegates administrator authentication to the providers configured for the "admin" security configuration on the "default" domain. When you install Unwired Platform, only the PreconfiguredUserLogin module is used for the "admin" security configuration. To make the "admin" security configuration production-ready, you must initially log in using the administrator credentials defined with the installer, and replace the PreconfiguredUserLogin module with production-ready providers.

The PreconfiguredUserLoginModule does not enforce password strength or change policies that would typically be in place for a production environment. Therefore, substitute the PreconfiguredUserLogin module with one that is suitable for a production environment. Subsequent logins are then performed with user credentials assigned to the platform or domain administrator role.

The “admin” security configuration is used to authenticate and authorize administrative users. The “admin” security configuration is on the “default” domain. The “default” domain is where critical runtime configuration artifacts exist.

Sybase recommends that you restrict the use of the “admin” security configuration on the “default” domain to administration authentication only. The “admin” security configuration should not be used for other domains.

Related concepts
SUP Platform Administrator
SUP Domain Administrator
SUP Helpdesk
Authentication in Unwired Platform