Go to main content
1/18
Contents
List of Examples
List of Figures
List of Tables
Title and Copyright Information
Preface
Audience
Documentation Accessibility
Related Documents
Conventions
Part I Planning for an Automatic Deployment of Oracle Identity and Access Management
1
Introduction to the Life Cycle Management (LCM) Tools
1.1
About the Automated Deployment of Oracle Identity and Access Management
1.1.1
Purpose of the Automation Tools for 11
g
Release 2 (11.1.2.3)
1.1.2
Packaging and Distribution of the Automation Tools
1.1.3
Deployment Capabilities of the LCM Tools for Oracle Identity and Access Management
1.1.4
Patching Capabilities of the LCM Tools for Oracle Identity and Access Management
1.1.5
Upgrade Capabilities of the LCM Tools for Oracle Identity and Access Management
1.2
Overview of Deploying Oracle Identity and Access Management With the LCM Tools
1.3
Oracle Identity and Access Management Topologies Supported by the LCM Tools
1.3.1
Diagram of the OIM-Only Topology
1.3.2
Diagram of the Oracle Access Manager (OAM) Suite and Oracle Mobile Security Suite (OMSS) Only Topology
1.3.3
Diagram of the OIM-OAM-OMSS Integrated with Directory Topology
1.4
Understanding the Supported Oracle Identity Manager Topologies
1.4.1
About the Web Tier
1.4.2
About the Application Tier
1.4.3
About the Directory/Database Tier
2
Installing and Preparing to Use the Life Cycle Management Tools
2.1
Verifying Certification, System Requirements, and Interoperability
2.2
Running the Health Check Utility to Verify Basic System Requirements
2.2.1
Understanding the Oracle Identity and Access Environment Health Check Utility
2.2.2
Running the Environment Health Check Utility Before Installing the LCM Tools
2.3
Understanding the Directory Server Requirements for Oracle Identity and Access Management
2.3.1
What LDAP Directories Are Supported by Oracle Identity and Access Management?
2.3.2
What Topologies Require an LDAP Directory?
2.3.3
How Do I Prepare an Existing LDAP Directory for Oracle Identity and Access Management
2.4
Obtaining the LCM Tools and Oracle Identity and Access Management Software Repository
2.5
About the Deployment Repository and LCM Tools Directory Structure
2.6
About Preparing a Database for an Oracle Identity and Access Management Deployment
2.7
Locating the Required Java Development Kit (JDK)
2.8
Installing the Oracle Identity and Access Management Lifecycle Tools
2.8.1
Locating and Starting the LCM Tools Installer
2.8.2
Summary of the LCM Tools Installer Screens
2.8.3
Specifying an Inventory Directory
2.9
Applying Patches and Workarounds
2.9.1
Mandatory Patches Required for Installing Oracle Identity Manager
2.10
Optionally Running Repository Creation Utility (RCU) to Create the Required Schemas
2.10.1
Locating and Starting RCU to Prepare for an Automated Deployment
2.10.2
Using RCU to Install the Required Oracle Identity and Access Management Schemas
2.10.2.1
Considerations When Using RCU to Install the Schemas for an Automated Deployment
2.10.2.2
Selecting the Required Schemas for Supported Automated Installation Topologies
3
Preparing an Existing Directory Service for Oracle Identity and Access Management
3.1
Preparing an Existing OUD or OID Directory Service for Use with an Automated Oracle Identity and Access Management Deployment
3.1.1
About the idmConfigTool_STA Script
3.1.2
Setting up Environment Variables to Run the idmConfigTool_STA Script
3.1.3
Editing the Properties File for the idmConfigTool_STA Script
3.1.4
Preparing a Password File
3.1.5
Running the preConfigIDStore Command
3.1.6
Running the prepareIDStore Command
3.1.7
Ensuring the Success of Running idmConfigTool
3.2
Preparing an Existing Microsoft Active Directory Instance for Use with Oracle Identity and Access Management
3.2.1
Adding the Required Schemas to the Active Directory Instance
3.2.2
Creating the Required Containers in the Active Directory Instance
3.2.3
Adding Access Control Lists (ACLs) to the Containers in Active Directory
3.2.4
Creating Users in the Active Directory Instance
3.2.5
Adding User Memberships to Groups in an Active Directory Instance
3.2.5.1
Summary of the Groups and Users for an OAM and OMSS Deployment
3.2.5.2
Summary of the Groups and Users for an Integrated OIM, OAM, and OMSS Deployment
3.2.6
Assigning Administrator Privileges to the OIMAdministrators Group
3.2.7
Resetting User Passwords in an Active Directory Instance
3.2.8
Enabling User Accounts for in an Active Directory Instance
3.2.9
Setting the LockoutThreshold in Active Directory
3.3
Configuring Active Directory in SSL Mode
Part II Deploying Oracle Identity and Access Management
4
Creating a Deployment Response File
4.1
What is a Deployment Response File?
4.2
Starting the Deployment Wizard and Navigating the Common Screens
4.3
Creating a Deployment Response File for an Oracle Identity Manager (OIM) Topology
4.4
Creating a Deployment Response File for an Oracle Access Manager (OAM) and Oracle Mobile Security Suite (OMSS) Topology
4.5
Creating a Deployment Response File for an Integrated OIM, OAM, and OMSS Topology
4.6
Additional Information When Creating a Response File for an Automated Deployment
4.6.1
How To Specify the Installation and Configuration Locations in the Deployment Wizard
4.6.2
Tips When Providing Database Connection Details in the Deployment Wizard
4.6.3
Tips When Providing Directory Service Information in the Deployment Wizard
5
Performing Oracle Identity and Access Management Deployment
5.1
Understanding the Stages of an Oracle Identity Manager Automated Deployment
5.2
About the Services and Servers Configured in Each Deployment Phase
5.3
Manual Deployment Tasks When Using Microsoft Active Directory for an Integrated Topology
5.3.1
Extending the OIM Schema for Active Directory After the Install Phase
5.3.2
Disabling the LDAPAddMissingObjectClasses Event Handler After the Configure Phase
5.4
Running the Environment Health Check Utility Before Deployment
5.5
Deploying Oracle Identity and Access Management Using the LCM Tools
5.5.1
Deploying Oracle Identity and Access Management Using the Deployment Wizard
5.5.2
Deploying Oracle Identity and Access Management Using the LCM Tools Command Line
5.6
Reviewing Environment Health Check Utility Reports and Logs After Deployment
Part III Post-Deployment Tasks and Troubleshooting
6
Post Deployment Tasks
6.1
Post Deployment Task for Accessing Help on the WebLogic Administration Console
6.2
Starting and Stopping Oracle Identity and Access Management Components After an Automated Deployment
6.2.1
Starting and Stopping Components Using the Provided Start and Stop Scripts
6.2.1.1
Locating the Provided Start and Stop Scripts
6.2.1.2
About Password Management When Using the Start and Stop Scripts
6.2.1.3
Starting Components Using the Provided Scripts
6.2.1.4
Stopping Components Using the Provided Scripts
6.2.1.5
Optional Arguments When Using the Start and Stop Scripts
6.2.1.6
Changing the Passwords in the credconfig Wallet
6.2.2
Starting and Stopping Components Manually
6.2.2.1
Understanding the Required Order of Starting and Stopping Components
6.2.2.2
Getting General Information About Starting and Stopping Oracle Fusion Middleware Components
7
Validating Deployment
7.1
Verifying Connectivity to the Administration Server
7.1.1
Verifying the Administration Server Connectivity for Oracle Access Management
7.1.2
Verifying Administration Server Connectivity for Oracle Identity Manager
7.2
Validating the Access Manager and Oracle Mobile Security Manager Configuration
7.3
Validating Oracle Identity Manager
7.4
Validating WebGate and the Access Manager Single Sign-On Setup
8
Troubleshooting Oracle Identity and Access Management Deployment
8.1
Getting Started with Troubleshooting
8.1.1
Using the Log Files
8.1.2
Recovering From Oracle Identity and Access Management Deployment Failure
8.2
Using My Oracle Support for Additional Troubleshooting Information
A
Cleaning Up an Environment Before Rerunning IAM Deployment
A.1
About the Cleanup and Restore Feature
A.1.1
Directories Affected by Cleanup and Restore
A.1.2
Where Does Cleanup and Restore Save Its Data?
A.1.3
About Managing Schemas When You Use Cleanup and Restore
A.1.4
Performing Cleanup and Restore Using the Command Line Deployment Tool
A.1.4.1
Using the Command Line to Clean Up a Failed Deployment
A.1.4.2
Using the Command Line to Restore the Install Phase Content
A.1.5
Performing Cleanup and Restore Using the Identity and Access Management Deployment Wizard
A.2
Manual Cleanup of Environment
Scripting on this page enhances content navigation, but does not change the content in any way.