Implementation Guide › CA IT PAM Considerations › CA IT PAM Authentication Implementation Process
CA IT PAM Authentication Implementation Process
The process of implementing CA IT PAM authentication using the CA EEM on the management CA Enterprise Log Manager server follows:
- Prepare to implement CA IT PAM authentication.
- Load the CA IT PAM installation package on the Windows server where you plan to install CA IT PAM.
- (Optional) Change the default password for the itpamcert.p12 certificate.
- Copy the ITPAM_eem.xml file from the host where you plan to install CA IT PAM to the CA Enterprise Log Manager appliance that includes CA EEM.
- Register ITPAM as an application instance on the same CA EEM that CA Enterprise Log Manager uses. Running the safex command generates the itpamcert.p12 certificate and the ITPAM application instance with two user accounts, itpamadmin and itpamuser.
Note: For help on using the safex command, type ./safex.
- Copy the itpamcert.p12 file from the CA Enterprise Log Manager appliance to the Windows host where you plan to install the CA IT PAM domain.
- Browse to the ITPAM application and reset the passwords for itpamadmin and itpamuser.
- Log on to the Windows server and install the third-party components using procedures documented in the CA IT Process Automation Manager Installation Guide.
- Install the CA IT PAM domain using the guidelines presented in this appendix and the CA IT PAM installation instructions.
- Start the CA ITPAM Server service.
- Launch and log in to the CA IT PAM console.
More information:
Prepare to Implement CA IT PAM Authentication on a Shared CA EEM
Copy an XML File to the Management CA Enterprise Log Manager
Register CA IT PAM with a Shared CA EEM
Copy the Certificate to the CA IT PAM Server
Set Passwords for the Predefined CA IT PAM User Accounts
Install the Third-Party Components Required by CA IT PAM
Install the CA IT PAM Domain
Start the CA ITPAM Server Service
Launch and Log in to the CA IT PAM Server Console