Sun Identity Manager 8.1 Resources Reference

Resource Configuration Notes

This section provides instructions for configuring Domino resources for use with Identity Manager, including:

General Configuration Instructions

Use these procedures to set up a Domino resource adapter:

ProcedureSetting Up a Domino Resource Adapter

  1. Create the Identity Manager administrator in Domino. Use a certifier ID that has access to all organizations needed to manage users.

  2. Add the user to the access control list (ACL) of the address book for the server, names.nsf.

    1. Give the user Editor access.

    2. Assign the user the following roles:

      • GroupModifier

        • UserCreator

          • UserModifier

  3. Add the user to the ACL of the registration log, certlog.nsf, with Depositor access.

  4. Add the user to the ACL of the Administration Requests, admin4.nsf, with Depositor access.

  5. Add the newly created user to server security:

    1. Open the Security panel to edit the server configuration.

    2. If access to the Domino server is restricted, make sure the Identity Manager proxy account has access to the server. This is done by specifying the account name or a group to which the proxy account belongs in the Access Serverfield.

    3. If there is a before or after action that calls a Domino agent, the user might need to be added to the Run unrestricted LotusScript/Java agentsor Run restricted LotusScript/Java agentfield, depending on how the agent being called is configured.

Installing the Gateway to Support Domino

For the gateway to talk with Domino, there must be a Notes client already installed on the gateway machine

Add the following string values to HKEY_LOCAL_MACHINE\SOFTWARE\Waveset\Lighthouse\Gateway in the Windows registry to ensure Domino works properly:


Note –

Make sure the Notes client is running with a network-enabled profile. If you change the network connection after you copy the ini file, you must re-copy it or run the client through the command line, as in:

C:\Lotus\Notes\notes.exe=PathToIniFile