Skip Headers
Oracle® Identity Manager Connector Guide for CA ACF2 Advanced
Release 9.0.1

Part Number B31112-01
Go to Documentation Home
Home
Go to Book List
Book List
Go to Table of Contents
Contents
Go to Feedback page
Contact Us

Go to previous page
Previous
Go to next page
Next
View PDF

1 About the Connector

The Oracle Identity Manager CA ACF2 Advanced Connector provides a native interface into z/OS mainframe and the Oracle Identity Manager. The Advanced Connector functions as a trusted virtual administrator on the targeted platform, performing tasks such as creating login IDs, suspending IDs, changing passwords, and performing other functions that administrators usually perform manually.

The Oracle Identity Manager CA ACF2 Advanced Connector enables bi-directional provisioning and reconciliation to CA ACF2 security facilities. This chapter discusses the following topics, and provides an overview of the Oracle Identity Manager CA ACF2 Advanced Connector components and the supported functionality:

Overview of Oracle Identity Manager CA ACF2 Advanced Connector

The Oracle Identity Manager CA ACF2 Advanced Connector includes the following components:

In addition, the Advanced connector is engineered for high-performance environments and transactions.

See Also:

For more information on the CA ACF2 Advanced Connector architecture and configuration of the message transport layer, refer to Appendix B, "Connector Architecture"

Supported Functionality

The following feature set lists use cases for the Oracle Identity Manager CA ACF2 Advanced Connector. It is important to note that the LDAP Gateway receives LDAP v.3 and sends CA ACF2 commands to the mainframe through the Provisioning Connector. The return messages are also in CA ACF2 format, which are then returned as LDAP version 3 responses.

Provisioning Connector Functionality

The CA ACF2 connector provides the following provisioning functionality:

  • Change CA ACF2 Password

  • Reset CA ACF2 Password

  • Create CA ACF2 User

  • Modify CA ACF2 User

  • Revoke CA ACF2 User Account

  • Add user to CA ACF2 Group

  • Delete CA ACF2 User

  • Resume CA ACF2 User Account

  • List CA ACF2 Users

  • List CA ACF2 Groups

  • List CA ACF2 Users By Group

  • List CA ACF2 Resource Profiles by User

  • Grant CA ACF2 User Access to Dataset

  • Grant CA ACF2 User Access to Resource Profile

  • Grant CA ACF2 User Access to TSO

Reconciliation Functionality

The CA ACF2 connector provides the following reconciliation functionality:

  • Detect and Report Native CA ACF2 Password Change Event

  • Detect and Report Native CA ACF2 Password Reset Event

  • Detect and Report Native CA ACF2 Create User Data Event

  • Detect and Report Native CA ACF2 Modify User Data Event

  • Detect and Report Native CA ACF2 Revoke User Event

  • Detect and Report Native CA ACF2 Add User to CA ACF2 Group Event

  • Detect and Report Native CA ACF2 Delete User Event

  • Detect and Report Native CA ACF2 Resume User Event

Files and Directories That Comprise the Connector

The files and directories that comprise this connector are compressed in the following ZIP file on the installation media:

Security Applications\CA ACF2\CA ACF2 Advanced Rev 1.0.0.zip

The contents of this file are described in brief in the following table:

Files and Directories Description of Files and Contents
xml\oimAcf2Connector.xml The XML file that contains component definitions for the connector.
lib\idm.jar The connector JAR file to be deployed on the Oracle Identity Manager system.
etc\LDAP Gateway\ Files required for LDAP Gateway deployment in the distributed environment system.
etc\Provisioning and Reconciliation Connector\Mainframe_ACF2\ directory files Files required for Provisioning Connector and Reconciliation Connector Deployment on the mainframe end.
docs\B31112-01.pdf

docs\html

The CA ACF2 Advanced Connector documentation.