Sun[TM] Identity Manager 8.0 Release Notes

Identity Manager 8.0 Features

This section of the Identity Manager 8.0 Release Notes provides information about


What’s New in This Release

This section provides additional information about the new features provided in Identity Manager 8.0, and the information is organized into the following sections:

Sun’s New Patch Process

Beginning with the release of Identity Manager 7.1 Update 1, updates containing major and critical customer-reported bug fixes are now delivered through a patch process, which replaces the older hot-fix process.

Patches are developed, tested, and released in six-week intervals. These patches have a GUI installer as well as a manual installation option, and they update the files in /WEB-INF/lib . Instructions for installing the patch will be included in the patch Release Notes, which are distributed in PDF format. Any fixes to the Gateway or to Password Sync will be described in the Release Notes and will require updating with the installation of the patch.

Identity Manager patches are cumulative, so you can expect fewer problems with unique fixes. You should plan to update to the latest patch level when installing or upgrading to a major or minor release. For example, if patch 3 is available when you install or upgrade to 8.0, you should apply patch 3 after installing or upgrading to 8.0. You would not be required to install patches 1 and 2 because patch 3 contains all the functionality in the previous patches.

The patch process also makes it easier for you to track a fix by its actual bug number. However, it is still possible that a fix made against an older version may not yet be available in a newer version. Regardless of which process your current version of Identity Manager follows, you must confirm that the new, target Identity Manager version contains all of the bug fixes that you need.

When a new patch is released, an announcement is sent to all of customer support. Patches are available through customer support. Please contact Sun customer support at http://www.sun.com/service/online/us for the latest patch available.

Major Features

Identity Manager 8.0 provides the following major new features:

Role Enhancements

Identity Manager 8.0 adds Role life cycle management providing the ability to require change approval on Role creates, edits and deletes as well as apply Role changes to all assigned Users. In addition, User-to-Role Life cycle management has been improved enabling support for future and temporary Role assignments. Role types with configurable features, including by default, Business Roles, IT Roles, Applications, and Assets, are now provided to encourage best practices with regards to Role management. For example, Business Roles can contain roles required by all, conditional for some, and optional (by request and may require approval) for others. This enables the ability for the Business Role designer to define coarse grain access, while delegating to the user or the user's manager the ability to fine tune the access assigned to each user, within the scope of a single Business Role.

Enhanced Reporting with Data Exporter

The Data Exporter feature has been added to allow the operational data used and produced by Identity Manager to become available for use by other processes and applications . Data Exporter allows data held by and flowing through Identity Manager to be periodically exported to a customer-managed data warehouse or third-party business intelligence and reporting tools. Data Exporting is optional, and when enabled customers can configured when and what data is exported. The exported data can be used to answer historical questions regarding 'Who had access to Resource X, and who approved that access?'. It can also be used to provide reports on IdM's operational behavior over time, such as 'Provision Operations by Resource' and 'Workflow Manual Action Response Times'. Decoupling the operational data (held inside the Identity Manager repository) and the historical data (exported by Data Exporter) gives the user explicit control over the lifecycle of this data. Providing the data in a documented, schema-conformant manner gives the user the ability to construct and execute analysis processes that will remain valid across future releases of Identity Manager.

Attribute Configuration

Extended, queryable, and summary attributes can now be configured for roles as well as users. The new extended attribute configuration supports specification of value syntax (STRING, INT, DATE, or BOOLEAN), whether the attribute can have a single or multiple values, and a text description for the attribute.

Administrator and User Interfaces

Auditing

Data Exporter

Forms

Identity Manager Business Process Editor (BPE)

Identity Manager Integrated Development Environment (Identity Manager IDE)

Installation

Password Synchronization

Reports

Repository

Resources

New Resource Adapters

The following new resource versions have been added this release:

Resource Adapter Updates

Roles

Scenarios

Security

Server

SPML

Synchronization

Other

https://reg.sun.com/register


Bugs Fixed in This Release

This section describe the bugs fixed in Identity Manager 8.0, and the information is organized as follows:

Administrator and User Interfaces

Auditing

Delegations

Forms

Installation

lh Console

Logging

Organizations

Provisioning

Reports

Repository

Resources

Roles

Security

Server

Service Provider

Synchronization

Workflow

Additional Defects Fixed

17111, 17242, 17269, 17414, 17668, 18555