Sun Java Enterprise System 5 Update 1 Installation Reference for UNIX

Access Manager Administration Information

Table 3–3 Access Manager Administration Information

Label and State File Parameter 

Description 

Install type

AM_REALM

Indicates whether or not to use Realm mode as the install type for the installation.

The install type indicates the level of interoperability with other components. You have a choice of Realm mode (version 7.x style) or Legacy mode (version 6.x style). The default value is disabled, which means Legacy mode will be used. (AM_REALM should be set to Enabled for Realm mode and should be set to Disabled for Legacy mode.)

Note: When you are installing Access Manager with Portal Server, you can select either Realm (Access Manager 7.x compatible) mode or Legacy (6.x compatible) mode for Access Manager. 

If installing Portal Server, you may use Realm mode only if Directory Server and Access Manager SDK are already installed and configured. 

If you are using Communications products, Legacy mode is required. 

Administrator User ID 

IS_ADMIN_USER_ID

Access Manager top-level administrator. This user has unlimited access to all entries managed by Access Manager. 

The default name, amadmin, cannot be changed. This ensures that the Access Manager administrator role and its privileges are created and mapped properly in Directory Server, allowing you to log onto Access Manager immediately after installation.

Administrator Password 

IS_ADMINPASSWD

Password of the amadmin user. The value must have at least eight characters.

LDAP User ID 

IS_LDAP_USER

Bind DN user for LDAP, Membership, and Policy services. This user has read and search access to all Directory Server entries. 

The default user name, amldapuser, cannot be changed.

LDAP Password 

IS_LDAPUSERPASSWD

Password of the amldapuser user. This password must be different from the password of the amadmin user. It can be any valid Directory Service password.

Password Encryption Key 

AM_ENC_PWD

A string that Access Manager uses to encrypt user passwords. 

The interactive installer generates a default password encryption key. You can accept the default value or specify any key produced by a J2EE random number generator. The password encryption key can be blank or at least 12 characters long. 

During Access Manager installation, its property file is updated and the property am.encryption.pwd is set to this value. The property file is AMConfig.properties . Location is:

Solaris OS: /etc/opt/SUNWam/config

Linux : /etc/opt/sun/identity/config

All Access Manager subcomponents must use the same encryption key that the Identity Management and Policy Services Core uses. If you are distributing Access Manager subcomponents across hosts and installing Administration Console or Common Domain Services for Federation Management, copy the value for am.encryption.pwd as generated by the installation of the core, and paste the value into this field.