

Connector Guides › Connectors Guide › Connecting to Endpoints › CA Arcot Connector › What Can You Use the Arcot Connector to Do?
What Can You Use the Arcot Connector to Do?
After you have set up a connection to a CA Arcot WebFort endpoint, you can use CA Identity Manager to do the following tasks:
- Create, view, and modify WebFort users
- Create, view, and modify OTP, ArcotID, and QnA credentials
- View and modify ArcotOTP credentials
- Set up self-service tasks to allow users to set up and download credentials
Note the following when deciding to implement the Arcot connector:
After you have set up a connection to CA Arcot RegFort, you can use CA Identity Manager to do the following tasks:
- Create certificate provisioning tasks for Arcot users directly or using an account template
- Invalidate any pending certificate provisioning tasks of an Arcot user
- View pending and completed certificate provisioning tasks
- List the certificates that have been issued for an Arcot user, and the status of those certificates
- Manage each certificate through its lifecycle. For example:
- Create Certificate Provisioning Tasks (CPTs) to generate certificates for a new employee’s smartcard
- When the CPT completed or the certificate is downloaded to the smartcard, the Life Cycle Management (LCM) shows that the certificate is ACTIVE.
- When the validity of the certificate is finished, the certificate's status changes to EXPIRED.
- If the employee resigns, then you can use the LCM action REVOKE, which changes the certificate's status to REVOKED.
Limitations
The Arcot connection to CA Identity Manager has some limitations, including the following items:
WebFort Tasks
You cannot use CA Identity Manager to do the following WebFort tasks:
- Organization management
- Credential profile management
Although the WebFort endpoint does not support user deletion, the Arcot connector can simulate user deletion.
Note: For more information about how the Arcot connector simulates account deletion, see How an Account Can Be Deleted.
RegFort Tasks
You cannot use CA Identity Manager to do the following RegFort tasks:
- Generate or download a certificate
- Manage a certificate profile
Synchronization
The connector does not support the following features:
- Password synchronization
- QnA synchronization
Text Notifications
You cannot use text (or SMS) for self-service OTP task notifications through CA Identity Manager. You can use email notification only.
Copyright © 2013 CA.
All rights reserved.
 
|
|