Configuration Guide › Connecting to Endpoint Systems › Using the CA IAM Connector Server › Define a Custom Configuration for the Endpoint
Define a Custom Configuration for the Endpoint
Important! For more information about endpoints, and endpoint objects and attributes, see the Endpoint Guides on CA Support.
If you select Use custom configuration for your endpoint template, manually provide mappings between the CA IAM Connector Server endpoints and CA GovernanceMinder.
Note: Avoid changing attribute mappings in connector configurations once you have run an initial import. If you do change the mapped attributes after initial import, it could cause significant performance impact.
- Under Define User Accounts, map endpoint account attributes to CA GovernanceMinder account attributes.
Note the following:
- Use the filter to import a subset of accounts from the CA IAM Connector Server.
- Click Add in the right-hand corner of the User Mapping section to add more user mappings between CA GovernanceMinder and the CA IAM Connector Server.
- Click Next.
- Define associations for the endpoint. This screen allows you to do the following:
- Define how objects in an endpoint map to objects in CA GovernanceMinder, for example, a group in Active Directory is a resource in CA GovernanceMinder
- Define how different objects are linked
- Define additional properties for both objects and links, where available
Define associations as follows:
- (Optional) If you want set up mappings for a deep use case, select the Enable deep use case associations check box.
Note: When importing data into a deep universe, verify that you map all mandatory attributes of the endpoint to appropriate CA GovernanceMinder roles or resources.
- Under Association List, click Add to the right.
- Select the initial object type (specific to the endpoint) to associate in the From object type drop-down list.
- Select the relationship attribute used to associate the two objects.
- Click Ok.
- (Optional) Under Custom association fields mapping, click Add to provide any custom association attribute mapping information.
Some associations have additional data related to them stored in attributes. Add the attribute mapping information if there is an attribute related to the association.
Click Ok.
- At this point, the associated objects do not yet relate to a known CA GovernanceMinder resource or role. Define the relation to a resource or role as follows:
- If the initial object type is not an account, select a CA GovernanceMinder role or resource to associate. Click the active link 'Select RCM role/resource' under the From "Account" or "RCM Role/Resource" column.
- Provide a name for the CA GovernanceMinder resource or role.
- (Optional) Click Edit to add field mappings for the related object.
You can map attributes on the endpoint object to fields on the CA GovernanceMinder resource or role.
- Click Ok.
- Under the To "RCM Role/Resource" column, click the active link 'Select RCM role/resource'.
- Provide a name for the CA GovernanceMinder resource or role.
- (Optional) Click Edit to add field mappings for the related object.
You can map attributes on the endpoint object to fields on the CA GovernanceMinder resource or role.
- Click Ok.
- Repeat Steps 3 and 4 for each association.
- Click Ok.
Note: If you want a shallow use case, associate an account to a CA GovernanceMinder resource. For a deep use case, map an account to a role, map the role to a resource, and optionally, map the account to a resource.
Copyright © 2014 CA.
All rights reserved.
|
|