1/14
Contents
List of Figures
List of Tables
Title and Copyright Information
Preface
Audience
Documentation Accessibility
Related Documents
Conventions
What's New in Oracle Access Manager?
What's New in 11
g
Release 1 (11.1.1)
1
About Oracle Identity Management Components
1.1
About Oracle Access Manager Integrations
1.2
A Note About IDMDomain Agents and Webgates
1.3
Components Described in This Document
1.3.1
Oracle Identity Navigator
1.3.2
Oracle Identity Federation
1.3.3
Oracle Identity Manager
1.3.4
Oracle Adaptive Access Manager
2
Introduction to Oracle Access Manager Integrations
2.1
Summary of Integrations
2.2
Enabling Identity Administration with Oracle Identity Manager
2.3
Enabling Single Sign-On for Oracle Identity Manager
2.3.1
Prerequisites
2.3.2
Configuration
2.4
Enabling Single Sign-On for Oracle Adaptive Access Manager
2.5
Integrating with Oracle Adaptive Access Manager for Native Authentication
2.6
Enabling Single Sign-On for Oracle Identity Navigator
2.7
Integrating Oracle Access Manager with Oracle Identity Federation
2.8
Integrating Oracle Identity Manager, Oracle Access Manager, and Oracle Adaptive Access Manager
2.8.1
Introduction and Benefits
2.8.1.1
How Oracle Access Manager Leverages Oracle Identity Manager and Oracle Adaptive Access Manager
2.8.1.2
Benefits of the Integration
2.8.1.3
Dependency of Components in the Integration
2.8.2
Deployment Options for Strong Authentication
2.8.2.1
About Native and Advanced Integration
2.8.2.2
Component Interactions
2.8.3
Deployment Options for Password Management
2.8.3.1
Oracle Access Manager Integrated with Oracle Identity Manager
2.8.3.2
Oracle Access Manager, Oracle Adaptive Access Manager, and Oracle Identity Manager Integrated
2.8.4
Password Management Scenarios
2.8.4.1
Self-Registration
2.8.4.2
Password Change
2.8.4.3
Forgot Password
2.8.4.4
Account Lock and Unlock
2.8.4.5
Challenge Setup
2.8.4.6
Challenge Reset
3
Integrating with Oracle Identity Navigator
3.1
Enabling Single Sign-On
3.1.1
Configure a New Resource for the Agent
3.1.2
Configure Oracle HTTP Server for the Oracle Access Manager Domain
3.1.3
Add New Identity Providers
4
Integrating Oracle Identity Federation
4.1
Background and Integration Overview
4.1.1
About Integration with Oracle Identity Federation
4.1.2
Overview of Integration Procedure
4.1.3
Prerequisites
4.1.4
Additional Setup
4.2
Register Oracle HTTP Server with Oracle Access Manager
4.3
Configure Oracle Identity Federation Providers
4.3.1
Generated Provider Metadata
4.3.2
Register the Providers
4.3.3
Configure Data Store
4.3.4
Configure the Authentication Engine
4.3.5
Set the Default Identity Provider
4.3.6
Configure Oracle Identity Federation in SP Mode
4.4
Delegate Authentication to Oracle Identity Federation
4.5
Test the Configuration
5
Integrating Oracle Access Manager and Oracle Adaptive Access Manager
5.1
Protecting the Oracle Adaptive Access Manager Console
5.1.1
Prerequisites
5.1.2
Integration Steps
5.2
Authentication Features in Oracle Adaptive Access Manager
5.3
Native Integration
5.3.1
Processing Flow for Native Integration
5.3.2
Authentication Scheme
5.3.3
Prerequisites
5.3.4
Native Integration Steps
5.3.5
How to Implement Case-Insensitive Logins
5.4
Advanced Integration
5.4.1
Processing Flow for Advanced Integration
5.4.2
Implementing Advanced Integration
5.5
Troubleshooting Tips
5.5.1
Using Non-ASCII Credentials
6
Integrating Oracle Access Manager, Oracle Adaptive Access Manager, and Oracle Identity Manager
6.1
Introduction
6.2
Process Flow
6.3
Prerequisites
6.4
Overview of Integration Tasks
6.5
Install Oracle Access Manager, Oracle Adaptive Access Manager, and Oracle Identity Manager
6.6
Integrate Oracle Access Manager and Oracle Identity Manager
6.7
Enable LDAP Synchronization for Oracle Identity Manager
6.8
Integrate Oracle Access Manager and Oracle Adaptive Access Manager
6.8.1
Set Oracle Adaptive Access Manager Properties for Oracle Access Manager
6.8.2
Set Oracle Access Manager Credentials in Credential Store Framework
6.9
Integrate Oracle Identity Manager and Oracle Adaptive Access Manager
6.9.1
Set Oracle Adaptive Access Manager Properties for Oracle Identity Manager
6.9.2
Set Oracle Identity Manager Credentials in Credential Store Framework
6.10
Configure Oracle Identity Manager Properties for the Integration
6.11
Configure Oracle Access Manager Policy Authentication Scheme
6.12
Restart the Servers
6.13
Troubleshooting Tips
6.13.1
Policies and Challenge Questions
6.13.2
Cookie Domain Definition
7
Configuring Oracle Access Manager to use Windows Native Authentication
7.1
Before You Begin
7.2
About Oracle Access Manager with Windows Native Authentication
7.3
Performing Prerequisite Tasks
7.3.1
Edit the krb5.conf File
7.3.2
Create the Service Principal Name (SPN)
7.3.3
Obtain the Kerberos Ticket
7.4
Configuring Oracle Access Manager for WNA
7.4.1
Set Up the Kerberos Authentication Module in Oracle Access Manager
7.4.2
Set the Oracle Access Manager Authentication Scheme for Windows Native Authentication
7.4.3
Register Microsoft Active Directory as a User-Identity Data Store
7.4.4
Verify the Oracle Access Manager Configuration File
7.5
Enabling the Browser to Return Kerberos Tokens
7.6
Validating WNA with Oracle Access Manager-Protected Resources
7.7
Troubleshooting WNA Configuration
Index
Scripting on this page enhances content navigation, but does not change the content in any way.