Exercise 1: Login in the IDM Interfaces
with the User Created
The goal of this exercise is to let you experience
about how to login in the different IDM interfaces.
- Login
IDM Admin Interface
- Login
IDM User Interface
- Login
IDM Debug Interface
(0.1) Login IDM
Administrator Interface
In this step, you are going to
login into the The Identity Manager Administrator interface serves as
the primary administrative view of the product. . Through this
interface, Identity Manager administrators manage users,
set up and assign resources, define rights and access levels, and audit
compliance in the Identity Manager system.
- Open a Web browser and
type the following address into the address bar:
- http://localhost:8080/idm/
- Depending on the options that you selected during the
Tomcat
installation, the port may be different.
- Enter the User ID and Password of a user that you created in
the Creating User Account Section.
- Observe that you were
not able to login because the user has no capabilities
-
Observe that you were
not able to login because the user
has no capabilities Screen with error
(0.2) Login IDM User
Interface
In this step, you are going to
login into The Identity Manager User interface presents a limited view
of the
Identity Manager system. This view is specifically tailored to users
without administrative capabilities.
-
Open a Web browser and
type the following address into the address bar:
- http://localhost:8080/idm/User
- Depending on the options that you selected during the Tomcat
installation, the port may be different.
- Enter the User ID and Password of a user that you created in
the Creating User Account Section.
- Observe that the user login was succesfull.
Remember all users without capabilities assigned should be able
to login on the User Interface
(0.3) Login IDM Debug
Interface
In this step, you are going to
login into the The Identity Manager Administrator interface serves as
the primary administrative view of the product. . Through this
interface, Identity Manager administrators manage users,
set up and assign resources, define rights and access levels, and audit
compliance in the Identity Manager system.
1. Open a Web browser and
type the following address into the address bar:
- http://localhost:8080/idm/Debug
- Depending on the options that you selected during the Tomcat
installation, the port may be different.
- Enter the User ID and Password of a user that you created in
the Creating User Account Section.
- Observe that you were
not able to login because the user has no capabilities
return
to the top
Exercise 2: Assigning User Capabilities
The goal of this exercise is assign to some of your
user the capability to administrate account in IDM.
- Assigning
User Capabilities
- Login
Admin interface with the Administrative Account
- Login
Debug Interface with the Administrative Account
(0.1) Assigning User
Capabilities
In this step, you are going to
login into the The Identity Manager Administrator interface and assign
an Account Administrator capability to the user 99902.
- Open a Web browser and
type the following address into the address bar:
- http://localhost:8080/idm/
- Enter the User ID and Password of a Configurator user.
- Use the Configuratior
account (Login: Configurator Password:
Configurator)
- Once you assign a user any capability this is considered an
Administrative User
- Click the Account Tabs
to access the Find User Page
- Enter the Account ID of the user 99902 and click
- Click Search
- User Account Search Results page appers .
- Select the checkbox for the user 99902
- Click Edit Button
- The Edit User Page appears, select the Security Tab
- Assign the Account
Administrator Capability
- Assigne the Top Organization
- Click The Save Button
- The Update Resource Acccount appears
- Click Save Button
- Click OK in the Workflow
Status Page
- Observe this page shows if the capability was assigned
correctly.
- At this time the user 99902 privileges change from Nmal
User to Administrative User
(0.2) Login Admin
interface with the
Administrative Account
In this step, you are going to
login into the The Identity Manager Administrator interface and assign
an Account Administrator capability to the user 99902.
1.
Open a Web browser and
type the following address into the address bar:
- http://localhost:8080/idm/
- Enter the User ID and Password of a 99902 user.
- Once you assign a user any capability this is considered an
Administrative User
- Observe the user 99902 icon color in red
- Observe the navigation tab menu depends of the capability
(0.3) Login Debug interface with
the
Administrative Account
In this step, you are going to
login into the The Identity Manager Administrator interface and assign
an Account Administrator capability to the user 99902.
1.
Open a Web browser and
type the following address into the address bar:
- http://localhost:8080/idm/debug
- Enter the User ID and Password of a 99902 user.
- Observe the System Setting options
enabled depends of the capability
return
to the top
Exercise 3: Create Organizations
The goal of this exercise is create some
organization where the users from a company could be placed.
- Create
Organizations
(0.1) Create
Organizations
In this step, you are going to
login into the The Identity Manager Administrator interface and create
Organizations
- Open a Web browser and
type the following address into the address bar:
- http://localhost:8080/idm/
- Enter the User ID and Password
- Use the Configuratior
account
- Click the Account Tabs
to access the List Account Page
- Click New Action and
New Organization drop
down list
- Enter America in the
Name field
- Scrolldown and Click Save
Button.
- Repeat the steps 3-4 to create the next organizations:
- Asia
- Africa
- Europe
- Australia
- Your screen should look like this
return
to the top
Exercise 4: BulkActions
The goal of this exercise is to understand the
functionality for the Bulk Action operations.
- Disable,Enable
and Delete Users
- Create
Users
- Update
Users
(0.1) Disable,Enable
and Delete Users
In this step, you are going to
login into the The Identity Manager Administrator interface and create
Organizations
- Open a Web browser and
type the following address into the address bar:
- http://localhost:8080/idm/
- Enter the User ID and Password
- Use the Configuratior
account
3. Click the
Accounts Tab to navigate to
the
Launch Bulk Actions
Page.
- Select Action Disable
- Select Target Resource Accounts radiobutton All
- Select checkbox Target The Identity System Account
- Select Get Target Identity System User From List radiobutton
- Enter in the UserList TextArea the users to be disabled:
4. Click the
Launch Button to execute.
- See the image below for more details
5. After you
click Launch Button a
Launch
Bulk Account Actions pager appears
- Observe that this screen show you the result of your Launch
Action
- You can click on the link or download the CSV file to validate
your results.
6. Your account
should be disabled and your IDM screen will look like this.
7. Repeat the
steps 4-6 but selecting the
Action
Enable
8. Your IDM
screen will look like this.
9. Repeat the
steps 4-6 but selecting the
Action
Delete
10. your IDM
screen will look like this.
(0.2)
Create Users
In this step, you are going to
login into the The Identity Manager Administrator interface and create
Users using a file with Bulk Action command
- Open a Web browser and
type the following address into the address bar:
- http://localhost:8080/idm/
- Enter the User ID and Password
- Use the Configuratior
account
- Download the Create Bulk Action File
and copy to C:\IDM\Labs
folder
- If the folder doesn't exist you can create it
- Click the Accounts
Tab and Select the Launch Bulk
Actions page
- Select from Action drop-down list From Action List
- Select the Allow resource
account creates checkbox
- Under Action List file text
click the Browse Button and point to the
C:\IDM\Labs\CreateUserBulkAction.txt
- Click Launch Button
- You could be receiving an error like this if you didn't copy
the Activation.jar file
mentioned at the beginning of this lab.
- Click OK on the
Launch Bulk Account Actions
- You can click the Click
here to view the task status. or Click the Download CSV to see
the results.
- Your IDM screen will look like this.
return
to the top
(0.3)
Update Users
In this step, you are going to
login into the The Identity Manager Administrator interface and mover
Users from a new Organization using a file with Bulk Action command
- Open a Web browser and
type the following address into the address bar:
- http://localhost:8080/idm/
- Enter the User ID and Password
- Use the Configuratior
account
- Download the
Update Action File and copy to C:\IDM\Labs
folder
- If the folder doesn't exist you can create it
- Click the Accounts
Tab and Select the Launch Bulk
Actions page
- Select from Action drop-down list From Action List
- Select the Allow resource
account creates checkbox
- Under Action List file text
click the Browse Button and point to the
C:\IDM\Labs\MoveOrgBulkAction.txt
- Click Launch Button
<>- You can click the Click
here to view the task status. or Click the Download CSV to see
the results.
- Your IDM screen will look like this.
return
to the top