Previous Topic: Acquire an ADS Server Using the User Console

Next Topic: Re-Initialize an ADS Endpoint

Acquire an ADS Server Using the Provisioning Manager

You must acquire the Active Directory Services server before you can administer it with CA Identity Manager. When acquiring an Active Directory Services server, perform the following steps from the Endpoint Type task view:

  1. Register the server as an endpoint in CA Identity Manager.

    Use the Active Directory Services Endpoint property sheet to register an Active Directory Services server. During the registration process, Identity Manager identifies the Active Directory Services server you want to administer and gathers information about it.

  2. Explore the objects that exist on the endpoint.

    After registering the server in CA Identity Manager, you can explore its contents. Use the Explore and Correlate Endpoint dialog. The Exploration process finds all Active Directory Services accounts and groups. You can correlate the accounts with global users at this time or you can correlate them later.

  3. Correlate the explored accounts with global users.

    When you correlate accounts, CA Identity Manager creates or links the accounts on an endpoint with global users, as follows:

    1. CA Identity Manager attempts to match the logon name with each existing global user name. If a match is found, CA Identity Manager associates the Active Directory Services account with the global user. If a match is not found, CA Identity Manager performs the next step.
    2. CA Identity Manager attempts to match the display name with each existing global user's full name. If a match is found, CA Identity Manager associates the Active Directory Services account with the global user. If a match is not found, CA Identity Manager performs the next step.
    3. If the Create Global Users as Needed button is selected, CA Identity Manager creates a new global user and then associates the Active Directory Services account with the global user. If the Create Global Users as Needed button is cleared, CA Identity Manager performs the next step.
    4. CA Identity Manager associates the Active Directory Services account with the [default user] object.