2 Integrating GoToMeeting with OIM AD Connector

In this integration, the user management operations are implemented in the GoToMeeting Admin Center (Admin Center) by using Microsoft Active Directory as a middleware. The OIM AD connector and GoToMeeting AD connector help in synchronizing user attributes between Oracle Identity Manager, Microsoft Active Directory, and GoToMeeting directory services.

All other information on this connector (such as certified languages, supported features, lookup definitions used during connector operations, and so on) is available in Oracle Identity Manager Connector Guide for Microsoft Active Directory User Management.

2.1 Certified Components for the OIM AD Connector Integration

These are the software components and their versions required for integrating Oracle Identity Manager with GoToMeeting using the OIM AD connector.

Table 2-1 Certified Components for the OIM AD Connector Integration

Component Requirement

Oracle Identity Governance or Oracle Identity Manager

You can use one of the following releases of Oracle Identity Manager or Oracle Identity Governance:

  • Oracle Identity Governance 12c (12.2.1.4.0)

  • Oracle Identity Governance 12c (12.2.1.3.0)

  • Oracle Identity Manager 11g Release 2 PS3 BP06 (11.1.2.3.6)

Target system

LogMeIn Admin Center

Oracle Identity Manager Connector for Microsoft Active Directory User Management

11.1.1.6.0

GoToMeeting Active Directory Connector

1.5.1.68

2.2 Architecture of the OIM AD Connector Integration

In this implementation, Microsoft Active Directory is used as a managed (target) resource of the identity data for Oracle Identity Manager.

The following connectors are used to synchronize data between Oracle Identity Manager and the Admin Center:
  • Oracle Identity Manager Connector for Microsoft Active Directory User Management

    The OIM AD connector allows synchronization of user information between Oracle Identity Manager and AD, and is configured to run in the account management mode. This mode enables the following operations:
    • Provisioning

      Provisioning involves creating, updating, or deleting users on AD through Oracle Identity Manager. When you allocate (or provision) a Microsoft Active Directory resource to an Oracle Identity Manager User, the operation results in the creation of an account on Microsoft Active Directory for that user. In the Oracle Identity Manager context, the term provisioning is also used to mean updates made to the AD account through Oracle Identity Manager.

    • Target resource reconciliation

      In target resource reconciliation, data related to newly created and modified accounts on AD can be reconciled and linked with existing Oracle Identity Manager Users and provisioned resources. To perform target resource reconciliation, the Active Directory User Target Reconciliation scheduled job is used.

    See Connector Architecture in Oracle Identity Manager Connector Guide for Microsoft Active Directory User Management.

  • GoToMeeting Active Directory Connector

    GoToMeeting uses a lightweight AD connector behind the firewall to synchronize user information between AD and GoToMeeting directory services. The GoToMeeting AD connector automates provisioning of user accounts to the Admin Center from AD. These user accounts are included as members of a Microsoft Active Directory group (specified as values of the AD Sync Group attribute of AD), which is used for synchronizing the accounts from AD to the Admin Center through a scheduled task.

    For details on the GoToMeeting AD connector, visit the GoToMeeting website at https://www.gotomeeting.com/, navigate to Support, and search for Active Directory Connector.

Figure 2-1 depicts the components used for integrating Oracle Identity Manager with GoToMeeting using the OIM AD connector.

Figure 2-1 Architecture of the OIM AD Connector Integration

Description of Figure 2-1 follows
Description of "Figure 2-1 Architecture of the OIM AD Connector Integration"

As shown in Figure 2-1, AD is configured as a target resource of Oracle Identity Manager. The OIM AD connector is a .NET framework-based connector that is implemented using the Identity Connector Framework (ICF) component. The ICF component provides basic reconciliation and provisioning operations that are common to all Oracle Identity Manager connectors. In addition, ICF provides common features that developers would otherwise need to implement on their own, such as connection pooling, buffering, time outs, and filtering. ICF is distributed together with Oracle Identity Manager. Therefore, you do not need to configure or modify ICF.

This implementation enables provisioning of user accounts on the target system through the following two-step process:
  1. The OIM AD connector creates or updates user accounts in AD through the provisioning operations that are performed on Oracle Identity Manager.

  2. The GoToMeeting AD connector automates provisioning of the user accounts by fetching the attributes from AD and then synchronizing the data with the Admin Center through the GoToMeeting AD connector scheduled task. Based on the data fetched from AD, the user accounts are automatically created or updated in the Admin Center.

Through reconciliation, account data that is created and updated directly on AD is fetched into Oracle Identity Manager and stored against the corresponding Oracle Identity Manager Users.

2.3 Operations Supported by the OIM AD Connector Integration

These are the user management operations supported by integrating GoToMeeting with Oracle Identity Manager using the OIM AD connector.

This integration supports the following operations:

  • Create User

  • Update User

  • Delete User

  • Enable User

  • Disable User

2.4 Deploying and Using the OIM AD Connector and GoToMeeting AD Connector

As a prerequisite for Oracle Identity Manager to communicate with Microsoft Active Directory and GoToMeeting, the OIM AD connector and GoToMeeting AD connector must be deployed and configured at the back end.

The detailed instructions for deploying and using the OIM AD connector is available in Oracle Identity Manager Connector Guide for Microsoft Active Directory User Management. For more information, see the following sections of the guide:

The procedure for deploying and using the GoToMeeting AD connector is available in the GoToMeeting product documentation. For the detailed instructions on deploying and using the GoToMeeting AD connector, visit the GoToMeeting website at https://www.gotomeeting.com/, navigate to Support, and search for Active Directory Connector.