Previous Topic: Scenario: How to Use CA EEM on CA Enterprise Log Manager for CA IT PAM Authentication

Next Topic: Prepare to Implement CA IT PAM Authentication on a Shared CA EEM

CA IT PAM Authentication Implementation Process

The process of implementing CA IT PAM authentication using the CA EEM on the management CA Enterprise Log Manager server follows:

  1. Prepare to implement CA IT PAM authentication.
    1. Load the CA IT PAM installation package on the Windows server where you plan to install CA IT PAM.
    2. (Optional) Change the default password for the itpamcert.p12 certificate.
  2. Copy the ITPAM_eem.xml file from the host where you plan to install CA IT PAM to the CA Enterprise Log Manager appliance that includes CA EEM.
  3. Register ITPAM as an application instance on the same CA EEM that CA Enterprise Log Manager uses. Running the safex command generates the itpamcert.p12 certificate and the ITPAM application instance with two user accounts, itpamadmin and itpamuser.

    Note: For help on using the safex command, type ./safex.

  4. Copy the itpamcert.p12 file from the CA Enterprise Log Manager appliance to the Windows host where you plan to install the CA IT PAM domain.
  5. Browse to the ITPAM application and reset the passwords for itpamadmin and itpamuser.
  6. Log on to the Windows server and install the third-party components using procedures documented in the CA IT Process Automation Manager Installation Guide.
  7. Install the CA IT PAM domain using the guidelines presented in this appendix and the CA IT PAM installation instructions.
  8. Start the CA ITPAM Server service.
  9. Launch and log in to the CA IT PAM console.

More information:

Prepare to Implement CA IT PAM Authentication on a Shared CA EEM

Copy an XML File to the Management CA Enterprise Log Manager

Register CA IT PAM with a Shared CA EEM

Copy the Certificate to the CA IT PAM Server

Set Passwords for the Predefined CA IT PAM User Accounts

Install the Third-Party Components Required by CA IT PAM

Install the CA IT PAM Domain

Start the CA ITPAM Server Service

Launch and Log in to the CA IT PAM Server Console