Skip Navigation Links | |
Exit Print View | |
Oracle Identity Analytics System Integrator's Guide 11g Release 1 |
1. Integrating With Oracle Identity Manager, Preferred Method
2. Integrating With Oracle Identity Manager, Deprecated Method
3. Integrating With Oracle Waveset (Sun Identity Manager)
Integrating Oracle Identity Analytics With Oracle Waveset
To Configure Oracle Identity Analytics and Oracle Waveset to Work Together
Step 1: To Import the Oracle Waveset SPML Exchange File
Step 2: To Create a Oracle Identity Analytics User That Oracle Waveset Will use to Connect
Step 3: To Create an Oracle Waveset User That Oracle Identity Analytics Will use to Connect
Step 4: To Designate Oracle Waveset as the Provisioning Server
Step 5: To Configure Oracle Waveset to use Oracle Identity Analytics Web Services
Step 6: To Configure the User Deferred Task Scanner
Step 7: To Configure the User Form so That Oracle Identity Analytics can Authenticate Over SPML
Populating Oracle Identity Analytics With User Information From Oracle Waveset
Use Case 1: Importing Global Users From Oracle Waveset Into Oracle Identity Analytics
To Import Users From Oracle Waveset Into Oracle Identity Analytics
Use Case 2: Importing Resource Metadata From Oracle Waveset Into Oracle Identity Analytics
To Import Resource Metadata From Oracle Waveset Into Oracle Identity Analytics
Use Case 3: Importing Resources From Oracle Waveset Into Oracle Identity Analytics
To Import Resources From Oracle Waveset Into Oracle Identity Analytics
Use Case 4: Importing User Accounts From Oracle Waveset Into Oracle Identity Analytics
To Import Accounts From Oracle Waveset Into Oracle Identity Analytics
Use Case 5: Importing Roles From Oracle Waveset Into Oracle Identity Analytics
To Import Role From Oracle Waveset Into Oracle Identity Analytics
Populating Oracle Waveset With Roles Information From Oracle Identity Analytics
Use Case 1: Exporting Roles From Oracle Identity Analytics to Oracle Waveset
To Export Roles to Oracle Waveset
Understanding Closed Loop Compliance
To Configure Resources in Oracle Identity Analytics for Remediation
To Configure Certifications in Oracle Identity Analytics for Remediation
Oracle Waveset Sample Workflows
Oracle Identity Analytics Web Services
4. Integrating With Other Provisioning Servers
6. Integrating With Intellitactics Security Manager
7. Configuring Oracle Identity Analytics For Web Access Control
Refer to the use cases in this section if you have user entitlements in Oracle Waveset that you want to use to populate the Oracle Identity Analytics Identity Warehouse. Importing users and roles from Oracle Waveset into Oracle Identity Analytics should be a one-time event that takes place when first configuring the systems.
Oracle Waveset saves information about users who are auto-provisioned. These users are imported into Oracle Identity Analytics as global users before their accounts are pulled in.
Log in to Oracle Identity Analytics.
Choose Administration > Configuration.
Click Import/Export.
To start a new import job, choose Schedule Job > Import > Import Users.
Under Data Selection Source, select the appropriate Connection Name and click Next.
Complete the form by entering the Name and Description of the Job.
Choose one of the following tasks:
To run the job immediately, select the Run the Job Now option.
To schedule the job for later, clear the Run the Job Now option and enter the details of the scheduled job.
Click Finish.
The import users job runs on the scheduled date and time.
Verify that the users are imported into Oracle Identity Analytics from Oracle Waveset by accessing the Users View in Oracle Identity Analytics (choose Identity Warehouse > User).
A resource type in Oracle Waveset is a type of target system, whereas a resource is an instance of a resource type. For example, consider the case of four different Windows NT systems hosting four different sets of users. In this scenario, 'Windows NT' is the resource type, whereas the four individual system names are resources of type 'Windows NT.'
In the Oracle Identity Analytics integration with Oracle Waveset, information on resource metadata can be imported from Oracle Waveset to Oracle Identity Analytics. This eliminates the need to manually recreate resource metadata in Oracle Identity Analytics.
Log in to Oracle Identity Analytics.
Choose Administration > Configuration.
Click Import/Export.
To start a new import job, choose Schedule Job > Import > Import Resource Metadata.
The next page will prompt you to choose the resource from the list of available resources for which metadata on attributes needs to be imported.
Select the specific resource type.
Under Data Selection Source, select the appropriate Connection Name and click Next.
Complete the form by entering the Name and Description of the Job.
Choose one of the following:
To run the job immediately, select the Run the Job Now option.
To schedule the job for later, clear the Run the Job Now option and enter the details of the scheduled job.
Click Finish to generate the Import Job.
The import resource metadata job runs on the scheduled date and time.
Verify that the resource metadata was properly imported into Oracle Identity Analytics by accessing the Oracle Identity Analytics Resources Types tab (choose Configuration > Resources Types).
Note - Seven resource types in Oracle Waveset are treated differently by Oracle Identity Analytics. They are the following:
Simulated
Scripted JDBC
Database Table
External
Scripted Gateway
Scripted Host
Shell Script
Each resource within the above resource type is created as a resource_type within Oracle Identity Analytics. The naming convention is "ResourceName__ResourceTypeName". This is because each resource is likely to have its own resource type metadata rather than a common metadata format.
With out-of-the-box integration capabilities, Oracle Identity Analytics can import resources from Oracle Waveset to Oracle Identity Analytics. This eliminates the need to manually create the resources in Oracle Identity Analytics.
Log in to Oracle Identity Analytics.
Choose Administration > Configuration.
Click Import/Export.
To start a new import job, choose Schedule Job > Import > Import Resources.
Under Data Selection Source, select the appropriate Connection Name and click Next.
Complete the form by typing a name and description for the job.
Choose one of the following tasks:
To run the job immediately, select the Run the Job Now option.
To schedule the job for later, clear the Run the Job Now option and enter the details of the scheduled job.
Click Finish to generate the import job.
The import resources job runs on the scheduled date and time.
Verify that the resources are imported into Oracle Identity Analytics from Oracle Waveset by accessing the Oracle Identity Analytics Resources tab (choose Identity Warehouse > Resources).
After global users are imported, you can import accounts (user entitlements) into Oracle Identity Analytics for different resource types. Before importing user accounts, make sure that the resource types and attributes are correctly configured in Oracle Identity Analytics. For more information, see Resource Types Configuration in the Oracle Identity Analytics 11gR1 Business Administrator's Guide, Oracle Identity Analytics Configuration chapter.
Log in to Oracle Identity Analytics.
Choose Administration > Configuration.
Click Import/Export.
To start a new import job, choose Schedule Job > Import > Import Accounts, and then click Next.
From the list of available resources for which user accounts can be imported, select the resource and the specific resource type.
Under Data Selection Source, select the appropriate Connection Name and click Next.
Complete the form by entering the Name and Description of the Job.
Choose one of the following:
To run the job immediately, select the Run the Job Now option.
To schedule the job for later, clear the Run the Job Now option and enter the details of the scheduled job.
Click Finish to create the Import Job.
The job runs on the scheduled date and time.
Verify that the accounts imported into Oracle Identity Analytics match the corresponding resource type accounts in Oracle Waveset.
Note - This should be done only as a one time effort for initial Roles population. It is recommended that Oracle Identity Analytics be kept as the Authoritative Source for roles and the roles would be overwritten if they were imported from Oracle Waveset on an ongoing basis.
Log in to Oracle Identity Analytics.
Choose Administration > Configuration.
Click Import/Export.
To start a new import job, choose Schedule Job > Import > Import Roles.
Under Data Selection Source, select the appropriate Connection Name and click Next.
Complete the form by typing a name and description for the job.
Choose one of the following tasks:
To run the job immediately, select the Run the Job Now option.
To schedule the job for later, clear the Run the Job Now option and enter the details of the scheduled job.
Click Finish to generate the import job.
The import resources job runs on the scheduled date and time.
Verify that the roles are imported into Oracle Identity Analytics from Oracle Waveset by accessing the Oracle Identity Analytics Roles tab (choose Identity Warehouse > Resources).