IDM User Management

Gabriel MagariƱo, gabriel.magarino@gmail.com, Sun Java System Identity Manager, www.javapassion.com/idm


Gabriel MagariƱo

The goal of this hands-on lab is to get you exposed to the basics operation for a User in IDM. Manual Operations for a User and Bulk Actions


Expected duration: 60 minutes (excluding homework)


Prerequisites

This hands-on lab assumes you have minimum programming experience.


Software Needed

Before you begin, you need to install the following software on your computer. 





OS platforms you can use


Change Log


Lab Exercises



Exercise 0: Create User Accounts

In this exercise, you are going to  create a User over the Admin Interface

               
          0. Open a Web browser and type the following address into the address bar:
   
                            http://localhost:[port]/idm/

          1. Login to the Identity Manager Administrator interface as the Configurator user.

          2. Click the Accounts Tab to navigate to the Accounts Page.

          3. Select New User from the New Actions menu to create a new user.




          4. A Create User form appears. Create an account with the next values.

Attribute

Value

Identity

 

Account ID

99901

First Name

John

Last Name

Doe

Email Address

john.doe@idm.com

Organization

Top

Manager is

Configurator

Password

P@ssword

Assigments

 

 

 

Security      

 

 

 

Delegations

 

 

 

Attributes

 

 

 

Compliance

 

 

 






         5. Click the Save Button.





          6. Repeat the steps 4-6 to create the next 2  users:

Attribute

Value

Identity

 

Account ID

99902

First Name

Steve

Last Name

Martin

Email Address

steve.martin@idm.com

Organization

Top

Manager is

Configurator

Password

P@ssword

Assigments

 

 

 

Security      

 

 

 

Delegations

 

 

 

Attributes

 

 

 

Compliance

 

 

 

Attribute

Value

Identity

 

Account ID

99903

First Name

Meg

Last Name

White

Email Address

meg.white@idm.com

Organization

Top

Manager is

Configurator

Password

P@ssword

Assigments

 

 

 

Security      

 

 

 

Delegations

 

 

 

Attributes

 

 

 

Compliance

 

 

 



         7. Your IDM should look like the image below.





                                                                                                                    return to the top



Exercise 1: Login in the IDM Interfaces with the User Created


                The goal of this exercise is to let you experience about how to login in the different IDM interfaces.


  1. Login IDM Admin Interface
  2. Login IDM User Interface
  3. Login IDM Debug Interface

(0.1) Login  IDM Administrator  Interface


In this step, you are going to login into the The Identity Manager Administrator interface serves as the primary administrative view of the product. . Through this interface, Identity Manager administrators manage users, set up and assign resources, define rights and access levels, and audit compliance in the Identity Manager system.

    1. Open a Web browser and type the following address into the address bar:
    1. Enter the User ID and Password of a user that you created in the Creating User Account Section.






(0.2) Login IDM User Interface


In this step, you are going to login into The Identity Manager User interface presents a limited view of the Identity Manager system. This view is specifically tailored to users without administrative capabilities.

    1.   Open a Web browser and type the following address into the address bar:

    1. Enter the User ID and Password of a user that you created in the Creating User Account Section.





(0.3) Login IDM Debug Interface


In this step, you are going to login into the The Identity Manager Administrator interface serves as the primary administrative view of the product. . Through this interface, Identity Manager administrators manage users, set up and assign resources, define rights and access levels, and audit compliance in the Identity Manager system.

          1. Open a Web browser and type the following address into the address bar:
    1. Enter the User ID and Password of a user that you created in the Creating User Account Section.






                                                                                                                             return to the top

Exercise 2: Assigning User Capabilities


                The goal of this exercise is assign to some of your user the capability to administrate account in IDM.

  1. Assigning User Capabilities
  2. Login Admin interface with the Administrative Account
  3. Login Debug Interface with the Administrative Account

(0.1) Assigning User Capabilities


In this step, you are going to login into the The Identity Manager Administrator interface and assign an Account Administrator capability to the user 99902.

    1. Open a Web browser and type the following address into the address bar:

    1. Enter the User ID and Password of a Configurator user.

    1. Click the Account Tabs to access the Find User Page
      • Enter the Account ID of the user 99902 and click
    2. Click Search



    1. User Account Search Results page appers .
    2. Select the checkbox for the user 99902
    3. Click Edit Button


    1. The Edit User Page appears, select  the Security Tab
    2. Assign the  Account Administrator Capability
    3. Assigne the Top Organization
    4. Click The Save Button



    1. The Update Resource Acccount appears
    2. Click Save Button


  1. Click OK in the Workflow Status Page


(0.2) Login Admin interface with the Administrative Account

In this step, you are going to login into the The Identity Manager Administrator interface and assign an Account Administrator capability to the user 99902.

               1. Open a Web browser and type the following address into the address bar:
    1. Enter the User ID and Password of a 99902 user.




(0.3) Login Debug interface with the Administrative Account

In this step, you are going to login into the The Identity Manager Administrator interface and assign an Account Administrator capability to the user 99902.

               1. Open a Web browser and type the following address into the address bar:
    1. Enter the User ID and Password of a 99902 user.




                                                                                                                    return to the top


Exercise 3: Create Organizations


                The goal of this exercise is create some organization where the users from a company could be placed.



  1. Create Organizations

(0.1) Create Organizations


In this step, you are going to login into the The Identity Manager Administrator interface and create Organizations

    1. Open a Web browser and type the following address into the address bar:

    1. Enter the User ID and Password

    1. Click the Account Tabs to access the List Account Page
    2. Click  New Action  and New Organization drop down list



    1. Enter America in the Name field
    2. Scrolldown and Click Save Button.




  1. Repeat the steps 3-4 to create the next organizations:

  1. Your screen should look like this



                                                                                                                    return to the top



Exercise 4: BulkActions


                The goal of this exercise is to understand the functionality for the Bulk Action operations.

  1. Disable,Enable and Delete Users
  2. Create Users
  3. Update Users

(0.1) Disable,Enable and Delete Users


In this step, you are going to login into the The Identity Manager Administrator interface and create Organizations

    1. Open a Web browser and type the following address into the address bar:

    1. Enter the User ID and Password


              3. Click the Accounts Tab to navigate to the Launch Bulk Actions  Page.
               4. Click the Launch Button  to execute.
   



              5. After you click Launch Button  a Launch Bulk Account Actions pager appears




              6. Your account should be disabled and your IDM screen will look like this.



              7. Repeat the steps 4-6 but selecting the Action Enable

              8. Your IDM screen will look like this.



              9. Repeat the steps 4-6 but selecting the Action Delete

              10. your IDM screen will look like this.






(0.2) Create Users


In this step, you are going to login into the The Identity Manager Administrator interface and create Users using a file with Bulk Action command

    1. Open a Web browser and type the following address into the address bar:

    1. Enter the User ID and Password

    1. Download the Create Bulk Action File and copy to  C:\IDM\Labs  folder
    1. Click  the Accounts  Tab and Select the Launch Bulk Actions page
    2. Select from  Action drop-down list From Action List
    3. Select the Allow resource account creates  checkbox
    4. Under Action List file text  click the Browse Button and point to the C:\IDM\Labs\CreateUserBulkAction.txt
    5. Click Launch Button



    1. Click  OK on the Launch Bulk Account Actions
      • You can click the Click here to view the task status. or Click the Download CSV to see the results.
    2. Your IDM screen will look like this.




                                                                                                                    return to the top



(0.3) Update Users


In this step, you are going to login into the The Identity Manager Administrator interface and mover Users from a new Organization using a file with Bulk Action command


    1. Open a Web browser and type the following address into the address bar:

    1. Enter the User ID and Password


  1. Download the  Update Action File and copy to  C:\IDM\Labs  folder
  1. Click  the Accounts  Tab and Select the Launch Bulk Actions page
  2. Select from  Action drop-down list From Action List
  3. Select the Allow resource account creates  checkbox
  4. Under Action List file text  click the Browse Button and point to the C:\IDM\Labs\MoveOrgBulkAction.txt
  5. Click Launch Button
  6. <>
  7. You can click the Click here to view the task status. or Click the Download CSV to see the results.
    1. Your IDM screen will look like this.





                                                                                                                         return to the top