Previous Topic: Configure Authentication MethodsNext Topic: Configure CA RiskMinder


Create an Application

In the User Console, an application represents the resource that the tenant administrator wants to protect. An application defines the type and level of security that end users encounter when they try to access the resource. You can apply any one or a combination of the authentication methods that you define to protect access to the application.

When a tenant is created in CA CloudMinder, the following applications are automatically created for the tenant:

You configure both applications according to the tenant’s requirements. In addition, you can create applications to secure other resources of the tenant.

After an application is configured, the application icon is displayed on the home page of the User Console. Users can click the icon to access the application. As an administrator, you can also give end users access to the application by inserting a link to the application in any web page. For example, you can insert an icon on your corporate web portal that links to the application.

Note: This section describes the steps to modify an application. These are very similar to the steps to create an application. There are differences only in the first few steps of the procedure.

Follow these steps:

  1. Log in to the User Console.
  2. Select Applications, Applications, Modify Application.

    The Modify Application screen opens.

  3. Use the search feature to display the list of applications for the tenant.

    The list of applications whose names meet the search criteria is displayed. If this is the first time you are performing this procedure, the search results display only the two preconfigured applications that are mentioned earlier in this section.

  4. (Optional) Associate a group with the application.
  5. Enter a launch URL for the application.

    A launch URL is the fully qualified domain name of the software resource you want to make available to users. Enter the fully qualified domain name of the software resource in the following format:

    https://resource-domain-name

    Example: https://forward-inc.com

    Note: Forward, Inc. is a fictitious company name that is used strictly for instructional purposes only and is not meant to reference an existing company.

    If you are creating an application for the User Console, enter a launch URL in the following format:

    https://SPS-hostname/iam/im/tenant-name/
    

    Example: https://forward-inc.com/iam/im/forward01/

  6. Select a logo.

    This is the icon for the application that appears in the User Console home page. Users can click the icon to access the software resource.

    Note: You can also give users access to the application by inserting a link to the application on a web page.

  7. Enter a welcome message.

    When users click any link you provide to the application, a login screen opens. The welcome message appears at the top of the login screen.

  8. Select a self-registration task.

    With a self-registration task specified, end users who do not have an account can register themselves with the application. You can select one of the following self-registration tasks:

    Create New Account

    Presents a simple registration form. When this form is submitted, a user account is created.

    Create New Account with Workflow

    Presents a simple registration form. When this form is submitted, the request for creating a user account is forwarded to one or more approvers. The account is created on approval of the request.

    Create New Account with Domain Validation

    Presents a simple registration form. When this form is submitted, the user's email domain is compared with the tenant email domain. If the domains match, a confirmation email is sent to the user. The account is created upon user confirmation.

    Note: The tenant email domain is specified in the User Console, under Tenant Administration, Tenant Settings.

    Self-Registration with Attribute Exchange

    Do not select this self-registration task in the context of application access. This task is intended for a different purpose.

  9. Click Add in the Authentication Methods area.

    The Select Authentication Methods screen displays a list of the authentication methods available in the tenant environment.

  10. Select one or more authentication methods.
  11. Click Select.

    The Create Application screen appears, updated with the list of authentication methods that you select.

  12. (Optional) Select a default authentication method from the drop-down list.

    The application is created.