Sun Identity Manager 8.1 Resources Reference

Account Attributes

SiteMinder Admin

The following table lists the default account attributes for the SiteMinder Admin adapter.

Identity System User Attribute  

Type  

Description  

description

String 

Description of the administrator 

smAdminAuth

String 

A user defined with admin authorization 

smAdminDomains

String 

Admin authority to manage domains 

smAdminAuthDir

String 

User Directory - LDAP, ODBC, WinNT, Custom, AD 

smAdminAuthScheme

String 

Authentication scheme for an administrator: “basic” authentication using a form or “X.509” using a client-certificate while connecting 

smAdminScope

String 

Admin scope defined for the host, port and auth scheme to which the credentials apply 

smManageSystemDomainObjects

String 

Admin’s authority to managing System objects like agents, Agent groups, Agent conf objects, host conf objects, User Directories, Policy Domain, affiliate domains, administrators, authentication schemes, Registration Schemes, Agent Types, SQL Query Schemes, Password Policies, trusted hosts and identity environment. 

smManageDomainObjects

String 

Admin’s authority to managing domain objects like realms, rules, rule groups, responses, response group, variables and policies by the admin with sufficient privileges 

smManageUsers

String 

Admin authority to set/unset with create/edit/delete privileges to manage users 

smManageKeysPwdPolicies

String 

admin with privileges to manage keys and password policies applied of users 

smManageReports

String 

Admin authority to manage reports 

smManageTrustedHosts

String 

Hosts that the server trusts 

SiteMinder Example Table

The following table lists the default account attributes for the SiteMinder Example Table adapter.

Identity System User Attribute  

Type  

Description  

userID

Integer 

The unique ID for the user. 

firstName

String 

The user’s first name. 

lastName

String 

The user’s last name. 

email

String 

The user’s email address. 

telephoneNumber

String 

The user’s phone number. 

expirePassword

Boolean 

Forces the user to supply a new password upon login. 

pin

String 

The user’s personal identification number. 

mileage

Integer 

Refer to the SiteMinder documentation. 

groups

String 

The group ID that the account belongs to. 

SiteMinder LDAP

The following table lists the default account attributes for the SiteMinder LDAP adapter.

Identity System User Attribute  

Type  

Description  

accountId

String 

User ID. This attribute maps to the uid resource user attribute. 

accountId

String 

Required. The user’s full name. This attribute maps to the cn resource user attribute. 

password

Encrypted 

The user’s password. 

firstname

String 

The user’s first name. 

lastname

String 

The user’s last name. 

expirePassword

Boolean 

Forces the user to supply a new password upon login. 

statusFlags

String 

Refer to the SiteMinder documentation. 

ldapGroups

String 

The user’s LDAP group memberships. 

modifyTimeStamp

String 

Indicates when a user entry was modified. 

objectClass

String 

The user’s object class.