Skip Headers
Oracle® Identity Manager Design Console Guide
Release 9.0

Part Number B32143-01
Go to Documentation Home
Home
Go to Table of Contents
Contents
Go to Index
Index

Go to previous page
Previous
Go to next page
Next
View PDF

A Reference

This appendix describes the various tables in Oracle Identity Manager.

Tables

The following tables list and describe:

Rule Elements

The following table lists the rule elements that can be used to create Oracle Identity Manager rules, using the Rule Designer form.

Type Sub-Type Attribute Source
General N/A User Profile Data Email
End Date
First Name
Identity
Last Name
Manager Full Name
Manager Login
Middle Name
Organization Name
Role
Start Date
General N/A User Profile Data Status
User Group Name
User Login
Oracle Identity Manager Type
Email
Any fields that appear in the User Defined Fields region of the User Profile tab of the Users form.
Process Determination Organization Provisioning Requester Information Email
End Date
First Name
Identity
Last Name
Location Name
Manager Full Name
Manager Login
Middle Name
Organization Name
Role
Start Date
State
Status
User Group Name
User Login
Oracle Identity Manager Type
Any fields that appear in the User Defined Fields region of the User Profile tab of the Users form.
Process Determination Organization Provisioning Object Information Object Name
Object Type
Request Target Information Organization Customer Type
Organization Name
Organization Status
Parent Organization
Any fields that appear in the User Defined Fields tab of the Organizations form.
Object Data Information Any fields that appear in the Additional Columns tab of the Form Designer form for the custom form associated with the resource object.
Process Data Information Any fields that appear in the Additional Columns tab of the Form Designer form for the custom form associated with the process.
User Provisioning Requester Information; Additional Address Info
Email
Request Target Information End Date
First Name
Identity
Last Name
Manager Full Name
Manager Login
Middle Name
Organization Name
Role
Start Date
Status
User Group Name
User Login
Oracle Identity Manager Type
Process Determination User Provisioning Requester Information; Request Target Information Any fields that appear in the User Defined Fields region of the User Profile tab of the Users form.
Object Information Object Name
Object Type
Object Data Information Any fields that appear in the Additional Columns tab of the Form Designer form for the custom form associated with the resource object.
Process Data Information Any fields that appear in the Additional Columns tab of the Form Designer form for the custom form associated with the process.
Approval; Standard Approval Requester Information Email
End Date
First Name
Identity
Last Name
Manager Full Name
Manager Login
Middle Name
Organization Name
Role
Start Date
Status
User Group Name
User Login
Oracle Identity Manager Type
Any fields that appear in the User Defined Fields region of the User Profile tab of the Users form.

RequestInformation Request Creation Date

Request ID

Request Object Action

Request Priority

Requestor
Process Determination Approval Object Information Object Name
Object Type

Object Data Information Any fields that appear in the Additional Columns tab of the Form Designer form for the custom form associated with the resource object.

Process Data Information Any fields that appear in the Additional Columns tab of the Form Designer form for the custom form associated with the process.
Task Assignment Organization Provisioning; User Provisioning Task Information Allow Cancellation while Pending
Allow Multiple Instances
Assign Task to Manager
Disable Manual Insert
Task Conditional
Task Data Label
Task Default Assignee
Task Name
Task Required for Completion
Task Sequence
Process Information Object Name

Process Name

Process Type
Object Information Object Name
Object Type
Requester Information Email
End Date
First Name
Identity
Task Assignment Organization Provisioning; User Provisioning Requester Information Last Name

Manager Full Name

Manager Login

Middle Name

Organization Name

Role

Start Date

State

Status

User Group Name

User Login

Oracle Identity Manager Type

Any fields that appear in the User Defined Fields region of the User Profile tab of the Users form.
Object Data Information Any fields that appear in the Additional Columns tab of the Form Designer form for the custom form associated with the resource object.
Process Data Information Any fields that appear in the Additional Columns tab of the Form Designer form for the custom form associated with the process.
Pre-Populate Organization Provisioning; User Provisioning Requester Information Email
End Date
First Name
Identity
Last Name
Manager Full Name
Manager Login
Middle Name
Organization Name
Pre-Populate Organization Provisioning;User Provisioning Requester Information Role

Start Date

Status

User Group Name

User Login

Email

Any fields that appear in the User Defined Fields region of the User Profile tab of the Users form.
Request Information Request Creation Date

Request ID

Request Object Action

Request Priority

Requestor
Object Information Object Name

Object Type
Object Data Information Any fields that appear in the Additional Columns tab of the Form Designer form for the custom form associated with the resource object.
Process Data Information Any fields that appear in the Additional Columns tab of the Form Designer form for the custom form associated with the process.
Organization Provisioning Request Target Information Organization Customer Type
Organization Name
Organization Status
Parent Organization
Any fields that appear in the User Defined Fields tab of the Organizations form.
User Provisioning Request Target Information Email
End Date
First Name
Identity
Last Name
Manager Full Name
Manager Login
Pre-Populate User Provisioning Request Target Information Middle Name
Organization Name
Province
Region
Role
Start Date
Status
User Group Name
User Login
Oracle Identity Manager Type
Email
Any fields that appear in the User Defined Fields region of the User Profile tab of the Users form.

EMail Variables

The following table lists the variables that can be used to create email templates, using the Email Definition form.

Type Target Location Type Contact Type Variable
Provisioning Related User Profile Information; Assignee Profile Information N/A N/A First Name
Identity
Last Name
Manager Login
Middle Name
Role
Status
User End Date
User Group Name
User Login
User Manager
User Start Date
Oracle Identity Manager Type
Provisioning Related User Profile Information; Assignee Profile Information N/A N/A Any fields that appear in the User Defined Fields region of the User Profile tab of the Users form.

Object Information N/A N/A Object Name




Object Target Type




Object Type

Process Information N/A N/A Object Name




Process Name




Process Type

Object Data Information N/A N/A Any fields that appear in the Additional Columns tab of the Form Designer form for the custom form associated with the resource object.

Process Data Information N/A N/A Any fields that appear in the Additional Columns tab of the Form Designer form for the custom form associated with the process.
Request Related Requester Information N/A N/A First Name




Identity




Email Address




Manager Login




Middle Name




Role




Status




User End Date




User Group Name




User Login




User Manager




User Start Date




Oracle Identity Manager Type




Any fields that appear in the User Defined Fields region of the User Profile tab of the Users form.
Request Related Request Information N/A N/A First Name




Identity




Last Name




Email Address




Manager Login




Role




Status




User End Date




User Group Name




User Login




User Manager




User Start Date




Oracle Identity Manager Type




Any fields that appear in the User Defined Fields region of the User Profile tab of the Users form.
Request Related Request Information N/A N/A List of objects being requested




List of targets being provisioned




Request Creation Date




Request ID




Request Name




Request Object Action




Request Priority




Requestor




Number
General User Profile Information N/A N/A First Name




Identity




Last Name




Email Address




Manager Login




Middle Name




Role




Status




User End Date




User Group Name




User Login




User Manager




User Start Date




Oracle Identity Manager Type




Any fields that appear in the User Defined Fields region of the User Profile tab of the Users form.

Data Types

The following table lists and describes the data types that can be used to create Oracle Identity Manager forms, using the Form Designer form.


Note:

If any data field has a variant type of Long, Short, Double, or Integer, two additional selections appears when the Property Name box is selected: Minimum Numeric Value and Maximum Numeric Value. These items allow you to set the numeric range for the data field.

For example, if a data field has a variant type of Integer, the Minimum Numeric Value is set to 10, and the Maximum Numeric Value is set to 15, the only valid entries that can appear in the data field are 10, 11, 12, 13, 14, and 15.

Data Type Data Property Description
Text Field Required If this text field must be populated for the form to be saved, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box. Note: The default value for this data property is false.
Is Visible If you want this text field to appear when Oracle Identity Manager generates the form, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box. Note: The default value for this data property is true.
Lookup Field Auto Complete By entering "true" in the corresponding Property Value text box, Oracle Identity Manager filters the Lookup field. An user can then add characters to the Lookup field before double-clicking it. By doing so, only those Lookup values which match these characters appears in the Lookup window.

As an example, for a State lookup field, a user can enter "new" into the field. Then, once the user double-clicks the Lookup field, only those states that begins with the letters "new" (for example, New Hampshire, New Jersey, New Mexico, and New York) appears in the Lookup window.If you do not want Oracle Identity Manager to filter the Lookup field, enter "false" into the associated Property Value text box.

The default property value for the Auto Complete property is false.

Column Captions In the corresponding Property Value text box, enter the name of the column heading that appears in the Lookup window when an user double-clicks the Lookup field. If the Lookup window has multiple columns, enter each column heading into the Property Value text box, separating them with commas (for example, Organization Name, Organization Status).
Lookup Field Column Names In the corresponding Property Value text box, enter the name of the database column that represents the column caption that you want to appear in the Lookup window.

If the Lookup window has multiple columns, enter each database column into the Property Value text box, separating them with commas.

Column Widths In the corresponding Property Value text box, enter the width of the column that appears in the Lookup window.

If the Lookup window has multiple columns, enter each column width into the Property Value text box, separating them with commas (for example, 20,20).

Lookup Column Name In the corresponding Property Value text box, enter the name of the Lookup column (as it appears in the database), which contains the entries that need to appear under a column heading of the Lookup window.

If the Lookup window has multiple columns, enter each database column into the Property Value text box, separating them with commas (for example, org_name,org_status.

Lookup Query In the corresponding Property Value text box, enter the name of the SQL query that executes when an user double-clicks the Lookup field. As a result, the appropriate Lookup columns appears in the Lookup window.

To correctly display the data returned from a query, you must add a lookupfield.header property to the xlWebAdmin_locale.properties file. For example, consider the following SQL query: select usr_status from usr. To view the data returned from the query, you must add the following entry to the xlWebAdmin_ locale.properties files:

lookupfield.header.users.status=User Status

If the xlWebAdmin_locale.properties file does not contain a lookupfield.header property for your specified query, then the Administrative and User Console displays a lookup window after you click the corresponding lookup icon.

The syntax for a lookupfield.header property is as follows:

lookupfield.header.column_code=display value

The column_code portion of the entry must be lowercase and any spaces must be replaced by underscore characters (_).

By default, the following entries for lookup field column headers are already available in the system resource bundle:

lookupfield.header.lookup_definition.lookup_ code_information
  .code_key=Value
lookupfield.header.lookup_definition.lookup_code_information
  .decode=Description
lookupfield.header.users.manager_login=User ID
lookupfield.header.organizations.organization_ name=Name
lookupfield.header.it_resources.key=Key
lookupfield.header.it_resources.name=Instance Name
lookupfield.header.users.user_id=User ID
lookupfield.header.users.last_name=Last Name
lookupfield.header.users.first_name=First Name
lookupfield.header.groups.group_name=Group Name
lookupfield.header.objects.name=Resource Name
lookupfield.header.access_policies.name=Access Policy Name
Lookup Field Lookup Code In the corresponding Property Value text box, enter the lookup definition code. This code contains all information pertaining to the lookup field, including lookup values and the text that appears with the lookup field once a lookup value is selected.

Important: The Lookup Code data property can be used in lieu of the Column Captions, Column Names, Column Widths, Lookup Column Name, and Lookup Query properties. In addition, the information contained in the Lookup Code property supersedes any values set in these five data properties.

Tip: An easy way to enter a lookup code is by launching the Lookup Definition form, querying for the desired code, copying this code to the Clipboard, and pasting it into the Lookup Code field.

Note: The classification type of the lookup definition code must be of Lookup Type (the Lookup Type radio button on the Lookup Definition form needs to be selected).

Required If this Lookup field must be populated for the form to be saved, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box.

Note: The default value for this data property is false.

Visible Field If you want this Lookup field to appear when Oracle Identity Manager generates the form, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box.

Note: The default value for this data property is true.

Text Area Number of Rows In the corresponding Property Value text box, enter the row length of the text area. So, if you want the text area to be five rows in length, type "5" into the Property Value text box.
Required If this text area must be populated for the form to be saved, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box.

Note: The default value for this data property is false.

Visible Field If you want this text area to appear when Oracle Identity Manager generates the form, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box.

Note: The default value for this data property is true.

IT Resource Lookup Field Type If you select this data property, a box appears in the Property Value text box. From this box, select the type of Server for the IT Resource.

Important: This property is required.

Required If this Lookup field must be populated for the form to be saved, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box.

Note: The default value for this data property is false.

Visible Field If you want this Lookup field to appear when Oracle Identity Manager generates the form, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box.

Note: The default value for this data property is true.

Date Field (Display Only) Visible Field If you want this text field to appear when Oracle Identity Manager generates the form, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box.

Note: The default value for this data property is true.

Check Box (Display Only) Visible Field If you want this check box to appear when Oracle Identity Manager generates the form, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box.

Note: The default value for this data property is true.

Text Area (Display Only) Number of Rows In the corresponding Property Value text box, enter the row length of the text area. So, if you want the text area to be five rows in length, type "5" into the Property Value text box.

Visible Field If you want this text area to appear when Oracle Identity Manager generates the form, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box.

Note: The default value for this data property is true.

Date and Time Window Required If this text field must be populated for the form to be saved, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box.

Note: To populate this text field, double-click it, and select a date and time from the Date & Time window that appears.

Note: The default value for this data property is false.


Visible Field If you want this text field to appear when Oracle Identity Manager generates the form, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box.

Note: The default value for this data property is true.

Password Field Required If this text field must be populated for the form to be saved, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box.

Note: The default value for this data property is false.


Visible Field If you want this text field to appear when Oracle Identity Manager generates the form, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box.

Note: The default value for this data property is true.

Radio Button Button Labels In the corresponding Property Value text box, enter the label for the radio button. For multiple radio buttons, this label represents the heading for the group box, containing the radio buttons.

When you are applying a label to multiple radio buttons, enter each label into the Property Value text box, separating them with commas (for example, Sun, Microsoft). Once Oracle Identity Manager generates the form, a group box encompasses these radio buttons, signifying that the buttons are associated with one another.


Button Values In the corresponding Property Value text box, enter the value for the radio button. This value goes to the database when a user selects the radio button.

For multiple radio buttons, enter each value into the Property Value text box, separating them with commas (for example, on, off).

Radio Button Required If a radio button must be selected for the form to be saved, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box.

Note: The default value for this data property is false.


Visible Field If you want this radio button (or group of radio buttons) to appear when Oracle Identity Manager generates the form, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box.

Note: The default value for this data property is true.

Check Box Required If this check box must be selected for the form to be saved, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box.

Note: The default value for this data property is false.


Visible Field If you want this check box to appear when Oracle Identity Manager generates the form, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box.

Note: The default value for this data property is true.

Combo Box Lookup Code In the corresponding Property Value text box, enter the Lookup definition code. This code contains all information pertaining to the box, including box items and the text that appears with the box once a lookup value is selected.

Important: The Lookup Code data property can be used in lieu of the Column Captions, Column Names, Column Widths, Lookup Column Name, and Lookup Query properties. In addition, the information contained in the Lookup Code property supersedes any values set in these five data properties.

Tip: An easy way to enter a lookup code is by launching the Lookup Definition form, querying for the desired code, copying this code to the Clipboard, and pasting it into the Lookup Code field.

Note: The classification type of the lookup definition code must be of Lookup Type (the Lookup Type radio button on the Lookup Definition form needs to be selected).


Required If this item from this box field must be selected for the form to be saved, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box.

Note: The default value for this data property is false.


Visible Field If you want this box to appear when Oracle Identity Manager generates the form, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box.

Note: The default value for this data property is true.

Text Field (Display Only) Visible Field If you want this text field to appear when Oracle Identity Manager generates the form, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box.

Note: The default value for this data property is true.

Lookup Field (Display Only) Auto Complete By entering "true" in the corresponding Property Value text box, Oracle Identity Manager filters the Lookup field. An user can then add characters into the Lookup field before double-clicking it. By doing so, only those Lookup values which match these characters appears in the Lookup window.

As an example, for a State lookup field, a user can enter "new" into the field. Then, once the user double-clicks the Lookup field, only those states that begins with the letters "new" (for example, New Hampshire, New Jersey, New Mexico, and New York) appears in the Lookup window.

If you do not want Oracle Identity Manager to filter the Lookup field, enter "false" into the associated Property Value text box.

The default property value for the Auto Complete property is false.


Visible Field If you want this Lookup field to appear when Oracle Identity Manager generates the form, enter "true" into the corresponding Property Value text box. Otherwise, type "false" into this text box.

Note: The default value for this data property is true.


System Properties

The following table lists and describes the system properties of Oracle Identity Manager:

Name Description Keyword Value S* Run On
Organization Process Inheritance Determines if processes allowed for an organization are inherited by sub-organizations. XL.OrganizationProcessInherit TRUE v S
Organization Process Restriction Determines whether the processes available for an organization are restricted to available processes of the parent organization (that are not a subset of the parent organization). XL.OrganizationProcessRestrict FALSE v S
Base Help URL The location of the online Help files. XL.BaseHelpUrl //docs/thortech.com/72/ v C
Pending Cancelled Tasks If this property is set to TRUE, and one task in a process is cancelled, then all other tasks of that process also get cancelled. XL.PendingCancelled True v S
Automator Polling Interval Sets the frequency of the Job Scheduler (in minutes) and checks for scheduled job tasks. AUTOMATOR.INTERVAL 2 v C
Maximum Connection Count Sets the maximum number of database connections that can be created in the connection pool. XL.MAX_CONN_CNT 50 v S
Connection ratio Sets the number of users that can share a database connection in the connection pool. XL.DB_RATIO 2 v S
Initial Connection Count Sets the initial number of database connections that users can share. XL.INITIAL_CONN_CNT 1 v S
Connection Test Interval Sets the frequency to check the connection pool for connection failures. XL.TEST_INTERVAL 900,000 v S
Pool Shrink Interval Based on the connection ratio and the current user count, connections may be closed and the pool shrunk. XL.SHRINK_INTERVAL 900,000 v S
Record Read Limit Sets the maximum number of records that can be displayed in a query result set. XL.READ_LIMIT 500 v C
Number of Questions Sets the number of questions that need to be completed by a user using the Web Application to reset the user's password. PCQ.NO_OF_QUES 3 v C
Use of Default Questions Determines whether a user is required to answer questions defined in the Web Application, or if the user is required to provide his or her own questions. PCQ.USE_DEF_QUES TRUE v C
Force to set questions at startup When the user logs into the Web Application for the first time, he/she needs to set the default questions for resetting his/her password. PCQ.FORCE_SET_QUES TRUE v C
Orbix IDL Compiler Location Needs to be set for generating a form, and indicates the location of the Orbix IDL compiler. SDK.IDL_COMPILER C:\IONA\BIN
C
IDL Files Location Needs to be set for generating a form and indicates the location of the IDL files. SDK.IDL_SOURCE_PATH C:\DEVEL\JAVA
C
JavaDoc Executable Location Needs to be set for generating a form and indicates the location of the JavaDoc executable file. SDK.JAVADOC_CMD C:\JDK1.3\BIN\JAVADOC
C
Compiled JAR File Location Needs to be set for generating a form and indicates the location where the JAR files are placed by Oracle Identity Manager. SDK.JAR_LOCATION C:\DEVEL\JAVA
C
User Id reuse property Setting this value to TRUE enables another user to reuse the same User ID after a user is deleted. XL.UserIDReuse FALSE
C
Organization Self-Serviceable Determines if the default value for a process is self-serviceable and if it is set or not. ORG.SELF_SERVICEABLE_DEFAULT FALSE
C
Allow application-password change for web application Determines whether users are allowed to change individual application passwords or only Oracle Identity Manager passwords. PWR.ENABLE_PASSWORD_CHANGE FALSE
C
Property dictates whether database name appears
XL.TOOLBAR_DBNAME_DISPLAY FALSE v C
Direct Provisioning vs Request for Access Policy Conflicts
XL.DirectProvision FALSE
S
Organization Delete/Disable Action
ORG.DisableDeleteActionEnabled FALSE
S
Show TAME in the Adapter Factory selection task list
AF.TAME_DISPLAY TRUE v C
Email Server
XL.MailServer localhost
S
User Language
user.language en v C
User Region
user.region US v C
User Variant
user.variant
v C
Database Maximum Connection Count This is the maximum number of connection to open. When this limit is reached, the threads requesting a connection are queued until a connection becomes available. XL.DB_MAX_CONN_CNT 25
S
Database Idle Connection Timeout This is the maximum number of seconds a connection can go unused before it is closed. XL.DB_IDLE_TIMEOUT 900
S
Database Forced Connection Timeout This is the maximum number of a thread can checkout a connection before it is closed and is then returned to the pool. The timeout is a protection against the thread dying, thereby leaving the connection checked out indefinitely. XL.DB_FORCED_TIMEOUT 10800
S
Database maximum Connection Usage If this value is greater than zero (0), the number of times a connection can be checked out before it is closed. This is used as a safeguard against cursor leak that occurs if you don't call ResultSet.close() and Statement.close(). XL.DB_MAX_CONN_USAGE 9000
S
Database Trace Enabled Use this parameter to turn the tracing on or off. If turned on, verbose messages about the pool is printed to STDERR. XL.DB_TRACE_ENABLED FALSE
S
Request Email
Request.Approval Email

S
Scheduler Polling Interval
Scheduler.PollingInterval 300000
S
Number of Correct Answers This value represents how many questions the user needs to answer correctly to reset his/her password. PCQ.NO_OF_CORRECT_ANSWERS 3 v C
Maximum Number of Login Attempts This value represents how many consecutive times the user can attempt to login to Oracle Identity Manager unsuccessfully before Oracle Identity Manager locks his/her account.

Note: If the user's account is locked, the user can unlock it by resetting the "challenge" questions associated with resetting his/her password.

XL.MaxLoginAttempts 3 v C
Maximum Number of Password Reset Attempts This value represents how many consecutive times the user can attempt to reset his/her password unsuccessfully before Oracle Identity Manager locks his/her account.

Important: Once the user's account is locked, the user cannot unlock it. If this occurs, contact the System Administrator.

XL.MaxPasswordResetAttempts 3 v
Self Registration Email From Address
XL.SelfRegistrationEmailFromAddress selfreg@xlselfreg.com v
Profile Edit Email From Address
XL.ProfileEditEmailFromAddress selfreg@xlselfreg.com v S
Is Self-Registration Allowed
XL.SelfRegistrationAllowed TRUE v C
Does user have to provide challenge information during registration
PCQ.PROVIDE_DURING_SELFREG TRUE v C