5 Identity Management Enterprise Management

This chapter describes the licensed features and links of the following management pack offered by Enterprise Manager in support of Identity Management:

Management Pack Plus for Identity Management

The Management Pack Plus for Identity Management enables enterprises to proactively monitor the availability, performance, load, and security metrics of various Identity Management components.

The following table describes this management pack offered by Enterprise Manager:

Management Pack Type of Licensing Information Licensing Information

Management Pack Plus for Identity Management

Supported Environments

This helps improve performance and availability, and reduce the cost and complexity of managing Identity Management deployments, including the following environments:

  • Oracle Internet Directory

  • Directory Integration Platform

  • Oracle Directory Server Enterprise Edition (formerly Sun Java Directory Server Enterprise Edition)

  • Oracle Virtual Directory

  • Oracle Identity Federation

  • Oracle Access Manager

  • Oracle Identity Manager

  • Oracle Adaptive Access Manager

  • Oracle Mobile & Social

  • Oracle Unified Directory

Management Pack Plus for Identity Management

License to Provision

License to provision Oracle Identity Management products through user-defined procedures is included as part of Management Pack Plus for Identity Management.

Management Pack Plus for Identity Management

General Features

The Management Pack Plus for Identity Management includes the following features:

  • Note: A management pack license is required to use the features described below in the Enterprise Manager graphical user interface, command-line interface, and published repository views.

  • Beacons measure availability and performance from representative key user locations.

  • Blackouts suspend monitoring on targets to support scheduled maintenance periods.

  • Complete service monitoring of service availability, performance, usage, and service level compliance.

  • Configuration to track configuration metrics, take configuration snapshots, and compare configurations for Oracle Access Manager 10g components, Oracle Internet Directory 11g, Oracle Directory Integration Platform 11g, Oracle Virtual Directory 11g, Oracle Identity Federation 11g, and Oracle Directory Server Enterprise Edition 6.x, 7.x, and 11gR1.

  • Management Connectors open help desk tickets for incidents raised in Enterprise Manager. Event connectors share event information with other management systems.

  • Metric and Alert/Event History

  • Metric Extensions create new metrics to monitor conditions specific to customer environments.

  • Monitoring and diagnostics to receive real-time metrics, historical data, and alert notifications. Proactively monitor the Oracle Identity Management environment. Out-of-box collection of key performance metrics for monitored components facilitates rapid time to value.

  • Monitoring Templates encapsulate target monitoring settings and can later be applied against many targets.

  • Monitoring support for IDM 12c: Oracle Access Manager (OAM), Oracle Identity Manager (OIM), Oracle Internet Directory (OID), and Directory Integration Platform (DIP).

  • Template Collections (with administration groups) automate the deployment of management settings on targets as they join the group.

  • Notifications to define and use different notification methods including e-mail, running custom OS scripts, PL/SQL procedures and SNMP traps; repeat notifications, use of notification-related actions in incident rule sets, administrator notification schedules.

  • Service modeling of critical business functions based on a wide range of supported protocols.

Management Pack Plus for Identity Management

General Features (Continued)

  • Single-step discovery of Identity Management 10g, 11g, and 12c components.

    Identity Management 10g components include: Oracle Access Manager (OAM) 10g, Oracle Identity Manager (OIM) 9.x, Oracle Identity Federation (OIF) 10g, and Oracle Identity Management Suite 10g (including Oracle Internet Directory, Directory Integration Platform, Delegated Administration Services, and Single Sign-On).

    Identity Management 11g components include: Oracle Internet Directory, Oracle Directory Integration Platform, Oracle Virtual Directory, Oracle Identity Federation, Oracle Access Manager, Oracle Identity Manager, and Oracle Adaptive Access Manager. Single-step discovery enables you to quickly set up your monitoring environment.

    Identity Management 12c components include: Oracle Directory Integration Platform, Oracle Internet Directory, Oracle Access Manager, and Oracle Identity Manager.

    A simple target discovery is also provided for Oracle Directory Server Enterprise Edition 6.x, 7.x, and 11g

  • Business Application Management to create and monitor business application targets to provide an intuitive representation of the relationship between your applications and business transactions and the underlying IT infrastructure.

Management Pack Plus for Identity Management

Oracle Unified Directory and WebLogic-based Containers Features

The following features are licensed for Oracle Unified Directory and WebLogic-based containers included in the Identity Management product restricted-use licensing that are licensed and managed by the Management Pack Plus for Identity Management:

  • Interactive JVM transaction trace Provide JVM thread tracing to view the response time breakdowns in each layer (servlet, JSP, EJB, JDBC, and SQL) of a JVM container.

  • JVM Diagnostics Agent hot deployment without WebLogic Server restarts or configuration changes.

  • JVM pool monitoring of all JVMs of an application together with uniform monitoring settings.

Management Pack Plus for Identity Management

WebLogic-based Containers Features

The following features are licensed for WebLogic-based containers included in the Identity Management product restricted-use licensing that are licensed and managed by the Management Pack Plus for Identity Management:

  • "Always on" low overhead monitoring, notifications, and dashboards to diagnose past problems, receive early warnings of outages, see a single view of the status of all applications.

  • Blackouts suspend monitoring on targets to support scheduled maintenance periods.

  • Business Application Management to provide an intuitive representation of the relationship between your applications and business transactions and the underlying IT infrastructure.

  • Composite Application Management to provide full visibility across all members and tiers of a composite application.

  • Historical performance monitoring to track availability and performance data over time.

  • Management Connectors open help desk tickets for incidents raised in Enterprise Manager. Event connectors share event information with other management systems.

  • Metric and Alert/Event History

  • Metric Extensions to create new metrics to monitor conditions specific to customer environments.

  • Monitoring Templates encapsulate target monitoring settings and can later be applied against many targets.

  • Template Collections (with administration groups) automate the deployment of management settings on targets as they join the group.

  • Notifications to define and use different notification methods including e-mail, running custom OS scripts, PL/SQL procedures and SNMP traps; repeat notifications, use of notification-related actions in incident rule sets, administrator notification schedules.

  • Routing Topology to understand relationships and health of a Fusion Middleware Farm/WebLogic Domain and their related targets.

  • Real-time visibility into a JVM and application state without instrumentation overhead eliminate the need to reproduce problems in a test environment.

    (Applies to applications deployed to both Oracle Application Server and WebLogic Server)

  • Request performance to provide historical views that show the response times for end-user requests from the context of WebLogic Server and the underlying JVM. Response time breakdowns are available in each layer (servlet, JSP, EJB, JDBC, and SQL) of an WebLogic container.

Management Pack Plus for Identity Management

WebLogic-based Containers Features

The following features are licensed for WebLogic-based containers in the Identity Management product restricted-use licensing that are licensed and managed by the Management Pack Plus for Identity Management:

  • Contextual visibility into Java EE and web service metrics

  • Cross-tier trace with Oracle Database to view the impact of database problems on all associated applications and JVMs, and isolate problems between Java and the database.

  • Diagnostic Snapshot of both JVM monitoring and diagnostics data in correlation with the WebLogic Server log files.

  • Differential heap analysis uses memory leak analysis in production, and simplifies memory growth and leak analysis.

  • Interactive JVM transaction trace to view the response time breakdowns in each layer (servlet, JSP, EJB, JDBC, and SQL) of a JVM container.

  • JVM Diagnostics Agent hot deployment without WebLogic Server restarts or configuration changes.

  • Log Viewer to access Oracle Fusion Middleware log files quickly and easily - no matter where they are stored on the file system. Search and correlate log messages across all Oracle Fusion Middleware components' logs based on properties such as time, severity or Execution Context ID (ECID).

  • Metrics visibility for any layer to generate customized dashboards and views automatically.

  • Middleware Diagnostics Advisor provides detailed advice and recommendations based on performance and configuration data for the entire middleware and database stack.

  • Service-level objectives provide service-level objectives (SLOs) at any point within the architecture for indicators and alerts.

  • Trace in-flight transactions to view request performance problems in real time. Analyze time spent in each resource bottleneck and Java method.

  • WebLogic Domain/JVM pool monitoring of all JVMs of an application with uniform monitoring settings.

Management Pack Plus for Identity Management

Oracle Access Manager Coherence-based Container Features

The following features are licensed for Oracle Access Manager Coherence-based containers included in the Identity Management product restricted-use licensing that are licensed and managed by the Management Pack Plus for Identity Management:

  • Automate deployment and setup of the Coherence cluster with multiple nodes.

  • Blackouts suspend monitoring on targets to support scheduled maintenance periods.

  • Cache data management to perform operations such as view, export, purge, and so on, on cache data.

  • Complete cluster visibility of detailed metrics for all Coherence components.

  • Configuration management to change run-time configuration parameters of multiple nodes, caches, and services from the central user interface console. Keep track of node configuration over period of time, change run-time configuration parameters of caches, nodes and services.

  • Customizable performance views by selecting metrics from the metrics pallet, overlay multiple metrics on the chart, save different views.

  • Log file monitoring of node log files by setting patterns.

  • Management Connectors open help desk tickets for incidents raised in Enterprise Manager. Event connectors share event information with other management systems.

  • Metric and Alert/Event History

  • Metric Extensions to create new metrics to monitor conditions specific to customer environments.

  • Monitor multiple clusters from a single console.

  • Monitoring Templates encapsulate target monitoring settings and can later be applied against many targets.

  • Template Collections (with administration groups) automate the deployment of management settings on targets as they join the group.

  • Notifications to define and use different notification methods including e-mail, running custom OS scripts, PL/SQL procedures and SNMP traps; repeat notifications, use of notification-related actions in incident rule sets, administrator notification schedules.

  • Routing Topology to understand relationships and health of a Fusion Middleware Farm/WebLogic Domain and their related targets.

  • Stop existing nodes and start new ones in a Coherence cluster.

  • Start and stop the entire Coherence cluster.

  • Topology view provide a graphical representation of the Coherence caches, nodes and hosts with related in context performance alerts.

Management Pack Plus for Identity Management

Oracle Identity Manager SOA-based Container Features

The following features are licensed for Oracle Identity Manager SOA-based containers included in the Identity Management product restricted-use licensing that are licensed and managed by the Management Pack Plus for Identity Management:

  • Adapter metrics provide throughput and error metrics for different adapters in graphical format.

  • Blackouts suspend monitoring on targets to support scheduled maintenance periods.

  • Business-IT alignment provides integration for business KPIs and system metrics in one system for correlation and trending.

  • Centralized management console to monitor and manage all enterprise components from a central location.

  • Change Activity Plans provide the ability to plan, track in real time, and execute data-centerwide change activities. Activities include: PSU patch rollouts, database consolidation to Exadata, and so on.

  • Configuration management for the BPEL Process Manager server/domains/processes and Oracle Service Bus.

  • Deployment automation of BPEL suitcases, OSB resources, SOA artifacts, and SOA composites.

  • Discovery and service modeling of Oracle BPEL processes, Oracle Service Bus-based business and proxy services. Provide automated system modeling capabilities for the SOA infrastructure.

  • Historical analysis and reporting to store collected metric and configuration data in a central repository.

  • Infrastructure management to monitor availability and performance of SOA infrastructure components.

  • Management Connectors open help desk tickets for incidents raised in Enterprise Manager. Event connectors share event information with other management systems.

  • Metric and Alert/Event History

  • Metric Extensions create new metrics to monitor conditions specific to customer environments.

  • Monitoring Templates encapsulate target monitoring settings and can later be applied against many targets.

  • Template Collections (with administration groups) automate the deployment of management settings on targets as they join the group.

  • Notifications to define and use different notification methods including e-mail, running custom OS scripts, PL/SQL procedures and SNMP traps; repeat notifications, use of notification-related actions in incident rule sets, administrator notification schedules.

Management Pack Plus for Identity Management

Oracle Identity Manager SOA-based Container Features (Continued)

  • Run-time governance to define SOAP tests to measure and record availability and performance of partner links (or any Web service) and business/proxy services for historical trending, troubleshooting, and root cause analysis purposes

  • Service level management to monitor services from the end-user's perspective using service tests or synthetic transactions, model relationships between services and underlying IT components, and report on achieved service levels

Management Pack Plus for Identity Management

Identity Management 10g Targets

  • Access Manager — Access Server

  • Access Manager — Identity Server

  • Access Manager — Access System

  • Access Manager — Identity System

  • Identity Federation Server

  • Identity Federation System

  • Identity Manager Repository

  • Identity Manager Server

  • Identity Manager System

  • Delegated Administration Server

  • Directory Integration Platform Server

  • Oracle Internet Directory

  • Single Sign-On Server

  • Hosts running Identity Management components

  • Generic Service or Web Application targets associated with Access Manager - Access System, Access Manager - Identity System, Identity Federation System, and Identity Manager System Hosts running Identity Management components

Management Pack Plus for Identity Management

Identity Management 11g Targets

  • Oracle Internet Directory

  • Oracle Unified Directory

  • Identity Federation Server

  • Directory Integration Platform Server

  • Oracle Virtual Directory

  • Oracle Access Manager

  • Oracle Access Manager Cluster

  • Oracle Adaptive Access Manager

  • Oracle Identity Manager

  • Oracle Adaptive Access Manager Cluster

  • Oracle Identity Manager Cluster

  • Hosts running Identity Management components

  • Generic Service & Identity and Access System targets associated with Identity Management 11g components

Management Pack Plus for Identity Management

Identity Management 12c Targets

  • Oracle Identity Manager

  • Directory Integration Platform Server

  • Oracle Access Manager

  • Oracle Identity Directory

Management Pack Plus for Identity Management

Oracle Directory Server Enterprise Edition Targets

With the Oracle System Monitoring plug-in for Oracle Directory Server, a simple target discovery is also provided for Oracle Directory Server Enterprise Edition (formerly Sun Java Directory Server Enterprise Edition) 6.x and 7.x, and ODSEE 11gR1. The following Oracle DSEE target types are supported:

  • Directory Server Enterprise

  • Directory Server Enterprise Edition Server

  • Directory Server Group

  • Hosts running Oracle DSEE components

Management Pack Plus for Identity Management

Licensed Links

The following licensed pages and links of this pack apply to the following Identity Management-specific targets within Enterprise Manager:

Identity and Access page

  • From the Targets menu, select Middleware. On the Middleware page, select the Middleware Features menu and then select Identity and Access. All links and drop-down menu items on this page are licensed.

Identity Management 11g Targets

  • From the Targets menu, select All Targets. On the All Targets page, select any of the target types referenced from Identity Management 11g Targets (listed above). All links and drop-down menu items are licensed.

Oracle Directory Server Enterprise Edition Targets

  • From the Targets menu, select All Targets. On the All Targets page, select any of the target types referenced from Oracle Directory Server Enterprise Edition Targets (listed above). All links and drop-down menu items are licensed.

Access Manager - Access Server page

  • From the Targets menu, select All Targets. On the All Targets page, select a target of type Access Manager – Access Server.

  • From the Targets menu, select Middleware. From the Middleware Features menu, select Identity and Access.

  • On the Access Manager – Access Server Home page, these items and all links in these sections are licensed:

    Black Out button

    Availability link

    Associated Directory Server Information section

    Alerts section

    Host Alerts section

    Configuration section

    Related Links section

Access Manager - Identity Server page

  • From the Targets menu, select All Targets. On the All Targets page, select a target of type Access Manager – Identity Server. The Access Manager – Identity Server Home page appears.

  • From the Targets menu, select Middleware. From the Middleware Features menu, select Identity and Access.

  • On the Access Manager - Identity Server Home page, these items and all links in these sections are licensed:

    Black Out button

    Availability link

    Associated Directory Server Information section

    Alerts section

    Host Alerts section

    Configuration section

    Related Links section

Management Pack Plus for Identity Management

Licensed Links (continued)

The following licensed pages and links of this pack apply to the following Identity Management-specific targets within Enterprise Manager:

Access Manager – Identity Server Performance page

  • From the Targets menu, select All Targets. On the All Targets page, select a target of type Access Manager – Identity Server. On the Access Manager - Identity Server Home page, select the Performance sub-tab. All features on this page are licensed.

Access Manager - Access System page

  • From the Targets menu, select All Targets. On the All Targets page, select a target of type Access Manager – Access System.

  • From the Targets menu, select Middleware. From the Middleware Features menu, select Identity and Access.

  • On the Access Manager - Access System home page, all features on the page are licensed.

  • From the Access Manager - Access System home page, select the Charts sub-tab. All features on this page are licensed.

  • From the Access Manager - Access System home page, select the Administration sub-tab. All features on this page are licensed.

  • From the Access Manager - Access System home page, select the Components sub-tab. All features on this page are licensed.

  • From the Access Manager - Access System home page, select the Topology sub-tab. All features on this page are licensed.

Access Manager - Identity System

  • From the Targets menu, select All Targets. On the All Targets page, select a target of type Access Manager – Identity System.

  • From the Targets menu, select Middleware. From the Middleware Features menu, select Identity and Access.

  • On the Access Manager - Identity System home page, all features on the page are licensed.

  • From the Access Manager - Access Identity home page, select the Charts sub-tab. All features on this page are licensed.

  • From the Access Manager - Access Identity home page, select the Administration sub-tab. All features on this page are licensed.

  • From the Access Manager - Access Identity home page, select the Components sub-tab. All features on this page are licensed.

  • From the Access Manager - Access Identity home page, select the Topology sub-tab. All features on this page are licensed.

Management Pack Plus for Identity Management

Licensed Links (continued)

The following licensed pages and links of this pack apply to the following Identity Management-specific targets within Enterprise Manager:

Identity Federation Server

  • From the Targets menu, select All Targets. On the All Targets page, select a target of type Identity Federation Server.

  • From the Targets menu, select Middleware. From the Middleware Features menu, select Identity and Access.

  • On the Identity Federation Server Home page, these items and all links in these sections are licensed:

    Black Out button

    Availability link

    User Data Store section

    Federation Data Store section

    Alerts section

    Host Alerts section

    Related Links section

Identity Federation System

  • From the Targets menu, select All Targets. On the All Targets page, select a target of type Identity Federation System.

  • From the Targets menu, select Middleware. From the Middleware Features menu, select Identity and Access.

  • On the Identity Federation System home page, all features on the page are licensed.

  • From the Identity Federation System home page, select the Charts sub-tab. All features on this page are licensed.

  • From the Identity Federation System home page, select the Administration sub-tab. All features on this page are licensed.

  • From the Identity Federation System home page, select the Components sub-tab. All features on this page are licensed.

  • From the Identity Federation System home page, select the Topology sub-tab. All features on this page are licensed.

Management Pack Plus for Identity Management

Licensed Links (continued)

The following licensed pages and links of this pack apply to the following Identity Management-specific targets within Enterprise Manager:

Identity Manager Repository

  • From the Targets menu, select All Targets. On the All Targets page, select a target of type Identity Manager Repository.

  • From the Targets menu, select Middleware. From the Middleware Features menu, select Identity and Access.

  • On the Identity Manager Repository home page, these items and all links in these sections are licensed:

    Black Out button

    Availability link

    Provisioning section

    Associated Remote Managers section

    Alerts section

    Host Alerts section

    Related Links section

Identity Manager Server

  • From the Targets menu, select All Targets. On the All Targets page, select a target of type Identity Manager Server.

  • From the Targets menu, select Middleware. Click the Middleware Features menu, then Identity and Access.

  • On the Identity Manager Server home page, these items and all links in these sections are licensed:

    Black Out button

    Availability link

    Alerts section

    Host Alerts section

    Related Links section

Identity Manager Server Performance page

  • From the Targets menu, select All Targets. On the All Targets page, select a target of type Identity Manager Server. From the Identity Manager Server home page, select the Performance sub-tab. All features on this page are licensed.

Management Pack Plus for Identity Management

Licensed Links (continued)

Identity Manager System

  • From the Targets menu, select All Targets. On the All Targets page, select a target of type Identity Manager System.

  • From the Targets menu, select Middleware. From the Middleware Features menu, select Identity and Access.

  • On the Identity Manager System home page, all features on the page are licensed.

  • From the Identity Manager System home page, select the Charts sub-tab. All features on this page are licensed.

  • From the Identity Manager System home page, select the Administration sub-tab. All features on this page are licensed.

  • From the Identity Manager System home page, select the Components sub-tab. All features on this page are licensed.

  • From the Identity Manager System home page, select the Topology sub-tab. All features on this page are licensed.

Hosts page with Identity Management Components

  • From the Targets menu, select Middleware. On the Middleware page, click the Middleware Features menu, then Identity and Access. All links on this page are licensed:

    Home

    Monitoring

    Control

    Job Activity

    Information Publisher Reports

    Administration

    Net Services Administration

    Log File Alerts

    Storage Details

    Remote File Editor

    Execute Host Command

    Privilege Delegation Setting

    Related Targets

    Configuration

    Compliance

    Target Setup

    Target Information

Hosts

  • From the Targets menu, select Hosts.

  • On the Hosts page, select the Performance sub-tab. All features on this page are licensed.

  • On the Hosts page, select the Administration sub-tab. All features on this page are licensed. (Note: The Administration page is only available for Linux operating systems.)

  • On the Hosts page, select the Targets sub-tab. All features on this page are licensed.

Management Pack Plus for Identity Management

Licensed Links Outside of Target-Specific Pages

Application Performance Management

  • From the Setup menu, select Middleware Management, and then select Setup. On this page, the ability to register and manage Application Performance Management Engines and other items are licensable as part of the Management Pack Plus for Identity Management.

Compliance

  • From the Enterprise menu, select Compliance. All features, functions, links, buttons, and drill-downs associated with the Library, Real-time Observations, and Results pages are licensed as part of the Management Pack Plus for Identity Management.

Configuration Collection Extensibility

  • From the Enterprise menu, select Configuration and Custom. All features, functions, links, buttons, and drill-downs on this page are licensed as part of the Management Pack Plus for Identity Management.

Configuration Compare

  • From the Enterprise menu, select Configuration and Compare. All features, functions, links, buttons, and drill-downs on this page are licensed as part of the Management Pack Plus for Identity Management.

Configuration History

  • From the Enterprise menu, select Configuration and History. All features, functions, links, buttons, and drill-downs on this page are licensed as part of the Management Pack Plus for Identity Management.

Configuration Instance Browser

  • From the Targets menu, select Middleware. Select a Fusion Middleware related target identified above. From the target's menu, click the Configuration submenu. All features, functions, links, buttons, and drill-downs from this submenu, excluding Topology, are licensed as part of the Management Pack Plus for Identity Management.

Configuration Save

  • From the Enterprise menu, select Configuration and Save. All features, functions, links, buttons, and drill-downs on this page are licensed as part of the Management Pack Plus for Identity Management.

Configuration Search

  • From the Enterprise menu, select Configuration and Search. All features, functions, links, buttons, and drill-downs on this page are licensed as part of the Management Pack Plus for Identity Management.

Management Pack Plus for Identity Management

Licensed Links Outside of Target-Specific Pages (Continued)

Configuration Topology

  • From the Enterprise menu, select Configuration and Topology. In the View drop-down menu, Used By is licensed as part of the Management Pack Plus for Identity Management.

  • From the Enterprise menu, select Configuration and Topology, Customization. All features, functions, links, buttons, and drill-downs on this menu are licensed as part of the Management Pack Plus for Identity Management.

Change Activity Plans

  • From the Enterprise menu, select Configuration. The Change Activity Plans and My Tasks items are licensable as part of the Management Pack Plus for Identity Management.

User Defined Deployment Procedures (UDDP)

  • From the Enterprise menu, select Provisioning and Patching, and then select Procedure Library. On the Provisioning Library page, from the list of actions, the Create New option is licensed as part of the Management Pack Plus for Identity Management.

Real-time Configuration Change Detection

  • From the Enterprise menu, select Compliance. All features, functions, links, buttons, and drill-downs associated Library, Results and Real-Time Observations pages are licensed as part of the Management Pack Plus for Identity Management.

Management Pack Plus for Identity Management

Real Experience Insight Restricted-Use License

Oracle includes a restricted-use license of Real Use Experience Insight (and its subcomponents) for the express purpose of monitoring Oracle Access Manager SSO URLs and Oracle Identity Manager web-pages served from licensed Oracle Identity Manager containers.

See Oracle Real User Experience Insight in End-User Monitoring for more information about REUI functionality.

Management Pack Plus for Identity Management

Service Level Management Restricted-Use License

Management Pack Plus for Identity Management includes the full capabilities of Enterprise Manager Cloud Control Service Level Management.

See Enterprise Manager Cloud Control Service Level Management in End-User Monitoring for more information.