1 Introduction to Oracle Identity and Access Management Migration and Coexistence

This chapter provides an overview of Oracle Identity and Access Management 11g Release 2 (11.1.2.2.0) product and the documentation roadmap. This chapters also describes the supported migration and coexistence scenarios for 11.1.2.1.0.

This chapter includes the following topics:

1.1 Oracle Identity and Access Management Overview

Oracle Identity and Access Management components enable enterprises to manage the end-to-end lifecycle of user identities across all enterprise resources - both within and beyond the firewall. With Oracle Identity and Access Management, you can deploy applications faster, apply the most granular protection to enterprise resources, automatically eliminate latent access privileges, and much more.

Oracle Identity and Access Management 11g Release 2 (11.1.2.2.0) includes the following products:

  • Oracle Access Management, which includes the following components:

    • Oracle Access Management Access Manager

    • Oracle Access Management Identity Federation

    • Oracle Access Management Mobile and Social

    • Oracle Access Management Security Token Service

  • Oracle Adaptive Access Manager

  • Oracle Identity Manager

  • Oracle Entitlements Server

  • Oracle Privileged Account Manager

  • Oracle Identity Navigator

1.2 Migration and Coexistence Scenarios

The term Migration refers to the migration of 10g version of Oracle Identity and Access Management component or Sun products to Oracle Identity and Access Management 11.1.2.2.0, scenarios where you migrate the following products to Oracle Identity and Access Management 11g Release 2 (11.1.2.2.0). In these migration scenarios, you must install a new 11g Release 2 (11.1.2.2.0) Oracle Home (IAM_HOME or ORACLE_HOME) and then migrate your configuration data from your previous installation to the new 11g Release 2 (11.1.2.2.0) Oracle Home.

  • Oracle Access Manager 10g

  • Oracle Adaptive Access Manager 10g

  • Oracle Single Sign-On 10g

  • Sun OpenSSO Enterprise 8.0

  • Sun Java System Access Manager 7.1

  • Oracle Identity Analytics

During migration, you can have both the old and the new deployments coexisting, such that some applications are protected by the old server, and the others are protected by the new server. The coexistence mode allows you to have seamless single sign-on experience when you navigate between applications protected by different servers.

For example, Sun OpenSSO Enterprise 8.0 and Oracle Access Management Access Manager 11.1.2.2.0 servers can coexist and work together, so that the you have seamless single sign-on experience when you navigate between applications protected by Sun OpenSSO Enterprise 8.0 and Oracle Access Management Access Manager 11.1.2.2.0 Servers.

The following are the coexistence scenarios supported in 11g Release 2 (11.1.2.2.0):

  • Coexistence of Oracle Access Manager 10g with Oracle Access Management Access Manager 11.1.2.2.0

  • Coexistence of Sun OpenSSO Enterprise 8.0 with Oracle Access Management Access Manager 11.1.2.2.0

  • Coexistence of Sun Java System Access Manager 7.1 with Oracle Access Management Access Manager 11.1.2.2.0

Note:

This guide covers the procedures for all the migration and coexistence scenarios described in this section.

1.3 Upgrade Scenarios

The term Upgrade refers to the upgrade of existing Oracle Identity and Access Management 11g Release 1 and 11g Release 2 components to Oracle Identity and Access Management 11g Release 2 (11.1.2.2.0). For each of these upgrade scenarios, you use the Oracle Identity and Access Management 11g Release 2 (11.1.2.2.0) installer to update your existing Oracle Home (IAM_HOME) to Oracle Identity and Access Management 11g Release 2 (11.1.2.2.0).

You can upgrade the following Oracle Identity and Access Management components to Oracle Identity and Access Management 11.1.2.2.0:

  • Oracle Identity and Access Management 11g Release 2 (11.1.2.1.0) Components

    • Oracle Access Manager 11.1.2.1.0

    • Oracle Adaptive Access Manager 11.1.2.1.0

    • Oracle Identity Manager 11.1.2.1.0

    • Oracle Entitlements Server 11.1.2.1.0

    • Oracle Privileged Account Manager 11.1.2.1.0

    • Oracle Identity Navigator 11.1.2.1.0

  • Oracle Identity and Access Management 11g Release 2 (11.1.2) Components

    • Oracle Access Manager 11.1.2

    • Oracle Adaptive Access Manager 11.1.2

    • Oracle Identity Manager 11.1.2

    • Oracle Entitlements Server 11.1.2

    • Oracle Privileged Account Manager 11.1.2

    • Oracle Identity Navigator 11.1.2

  • Oracle Identity and Access Management 11g Release 1 (11.1.1.7.0) Components

    • Oracle Access Manager 11.1.1.7.0

    • Oracle Adaptive Access Manager 11.1.1.7.0

    • Oracle Identity Manager 11.1.1.7.0

    • Oracle Identity Navigator 11.1.1.7.0

  • Oracle Identity and Access Management 11g Release 1 (11.1.1.5.0) Components

    • Oracle Access Manager 11.1.1.5.0

    • Oracle Adaptive Access Manager 11.1.1.5.0

    • Oracle Identity Manager 11.1.1.5.0

    • Oracle Entitlements Server 11.1.1.5.0

    • Oracle Identity Navigator 11.1.1.5.0

  • Oracle Identity Manager 9.1.x.x

Note:

This guide covers only the migration and coexistence scenarios described in Section 1.2, "Migration and Coexistence Scenarios".

The upgrade scenarios are covered in the Oracle Fusion Middleware Upgrade Guide for Oracle Identity and Access Management.

1.4 Supported Starting Points for Migration and Coexistence

This section describes the supported starting points for Oracle Identity and Access Management migration and coexistence.

This section contains the following sub-sections:

1.4.1 Supported Starting Points for Oracle Access Manager 10g Migration

Table 1-1 lists the releases of Oracle Access Manager 10g supported for migration.

Table 1-1 Oracle Access Manager 10g Releases Supported for Migration

Release Description

Oracle Access Manager 10g (10.1.4.3)

This version of Oracle Access Manager is supported for migration.


1.4.2 Supported Starting Points for Oracle Adaptive Access Manager 10g Migration

Table 1-1 lists the releases of Oracle Adaptive Access Manager 10g supported for migration.

Table 1-2 Oracle Adaptive Access Manager 10g Releases Supported for Migration

Release Description

Oracle Adaptive Access Manager 10g (10.1.4.5.0)

This version of Oracle Adaptive Access Manager is supported for migration.


1.4.3 Supported Starting Points for Oracle Single Sign-On 10g Migration

Table 1-3 lists the releases of Oracle Single Sign-On 10g supported for migration.

Table 1-3 Oracle Single Sign-On 10g Releases Supported for Migration

Release Description

Oracle Single Sign-On 10g (10.1.2) and 10g (10.1.4)

This version of Oracle Single Sign-On was available as part of Oracle Application Server 10g Release 2 (10.1.2.3) and 10g (10.1.4).


1.4.4 Supported Starting Points for Sun OpenSSO Enterprise Migration

Table 1-4 lists the releases of Sun OpenSSO Enterprise supported for migration.

Table 1-4 Sun OpenSSO Enterprise Releases Supported for Migration

Release Description

Sun OpenSSO Enterprise 8.0 Update 2

This version of Sun OpenSSO Enterprise is supported for migration.


1.4.5 Supported Starting Points for Sun Java System Access Manager Migration

Table 1-5 lists the releases of Sun Java System Access Manager supported for migration.

Table 1-5 Sun Java System Access Manager Releases Supported for Migration

Release Description

Sun Java System Access Manager 7.1 or Sun Java System Access Manager 7.1 Patch 6

These versions of Sun Java System Access Manager are supported for migration.


1.4.6 Supported Starting Points for Oracle Identity Analytics Migration

Table 1-6 lists the releases of Oracle Identity Analytics supported for migration.

Table 1-6 Oracle Identity Analytics Releases Supported for Migration

Release Description

Oracle Identity Analytics 11g Release 1 (11.1.1.5.0)

This version of Oracle Identity Analytics is supported for migration.


1.4.7 Supported Starting Points for Coexistence of Oracle Access Manager 10g With Oracle Access Management Access Manager 11.1.2.2.0

Table 1-7 lists the releases of Oracle Access Manager 10g supported for coexistence with Oracle Access Management Access Manager 11g Release 2 (11.1.2.2.0).

Table 1-7 Oracle Access Manager 10g Releases Supported for Coexistence

Release Description

Oracle Access Manager 10g (10.1.4.3)

This version with any Bundle Patch is supported for coexistence, where both the Oracle Access Manager 10g and Oracle Access Management Access Manager 11g Release 2 (11.1.2.2.0) deployments coexist.


1.4.8 Supported Starting Points for Coexistence of Sun OpenSSO Enterprise With Oracle Access Management Access Manager 11.1.2.2.0

Table 1-8 lists the releases of Sun OpenSSO Enterprise supported for coexistence with Oracle Access Management Access Manager 11g Release 2 (11.1.2.2.0).

Table 1-8 Sun OpenSSO Enterprise Releases Supported for Coexistence

Release Description

Sun OpenSSO Enterprise 8.0 Update 2

This version of Sun OpenSSO Enterprise is supported for coexistence, where both the Sun OpenSSO Enterprise and Oracle Access Management Access Manager 11g Release 2 (11.1.2.2.0) deployments coexist.


1.4.9 Supported Starting Points for Coexistence of Sun Java System Access Manager With Oracle Access Management Access Manager 11.1.2.2.0

Table 1-9 lists the releases of Sun Java System Access Manager supported for coexistence with Oracle Access Management Access Manager 11g Release 2 (11.1.2.2.0).

Table 1-9 Sun Java System Access Manager Releases Supported for Coexistence

Release Description

Sun Java System Access Manager 7.1 Patch 6

This version of Sun Java System Access Manager is supported for coexistence, where both Sun Java System Access Manager and Oracle Access Manager 11g deployments coexist.


1.5 Documentation Roadmap

This section provides the documentation roadmap for all the migration and coexistence scenarios.

Table 1-10 lists all the migration and coexistence scenarios, and the chapters in which the respective migration and coexistence procedure is described. Depending on the migration and coexistence scenario, go to the respective chapter, and follow the procedure.

Table 1-10 Documentation Roadmap for Oracle Identity and Access Management Migration and Coexistence

Scenarios Chapter

Migration Scenarios

 

Oracle Access Manager 10g to Oracle Access Management Access Manager 11.1.2.2.0 migration

Chapter 2, "Migrating Oracle Access Manager 10g Environments"

Oracle Adaptive Access Manager 10g to Oracle Adaptive Access Manager 11.1.2.2.0 migration

Chapter 3, "Migrating Oracle Adaptive Access Manager 10g Environments"

Oracle Single Sign-On 10g to Oracle Access Management Access Manager 11.1.2.2.0 migration

Chapter 4, "Migrating Oracle Single Sign-On 10g Environments"

Sun OpenSSO Enterprise 8.0 to Oracle Access Management Access Manager 11.1.2.2.0 migration

Chapter 5, "Migrating Sun OpenSSO Enterprise 8.0 Environments"

Sun Java System Access Manager 7.1 to Oracle Access Management Access Manager 11.1.2.2.0 migration

Chapter 6, "Migrating Sun Java System Access Manager 7.1 Environments"

Oracle Identity Analytics 11.1.1.5.0 to Oracle Identity Manager 11.1.2.2.0 migration

Chapter 7, "Migrating Completed Certifications From Oracle Identity Analytics to Oracle Identity Manager"

   

Coexistence Scenarios

 

Coexistence of Oracle Access Manager 10g with Oracle Access Management Access Manager 11.1.2.2.0

Chapter 8, "Coexistence of Oracle Access Manager 10g with Oracle Access Management Access Manager 11.1.2.2.0"

Coexistence of Sun OpenSSO Enterprise 8.0 with Oracle Access Management Access Manager 11.1.2.2.0

Chapter 9, "Coexistence of Sun OpenSSO Enterprise 8.0 with Oracle Access Management Access Manager 11.1.2.2.0"

Coexistence of Sun Java System Access Manager 7.1 with Oracle Access Management Access Manager 11.1.2.2.0

Chapter 10, "Coexistence of Sun Java System Access Manager 7.1 with Oracle Access Management Access Manager 11.1.2.2.0"