Previous Topic: Acquire a CA Access Control Server Using the User Console

Next Topic: ACC Account Templates

Acquire the CA Access Control Server Using the Provisioning Manager

You must acquire the CA Access Control server before you can administer it with CA Identity Manager. When acquiring a CA Access Control server, perform the following steps from the Endpoint Type task view:

  1. Register the server as an endpoint in CA Identity Manager.

    Use the CA Access Control property sheet to register a CA Access Control server. During the registration process, CA Identity Manager identifies the CA Access Control server you want to administer and gathers information about it.

    Note: Ping the node name from the Provisioning Server. If the ping is successful, then you know that CA Identity Manager will find the CA Access Control node.

  2. Explore the objects that exist on the directory.

    After registering the server in CA Identity Manager, you can explore its contents, using the Explore and Correlate Endpoint dialog. The Exploration process finds all CA Access Control accounts and groups. You can correlate the accounts with global users at this time, or you can correlate them later.

  3. Correlate the explored accounts with global users.

    When you correlate accounts, CA Identity Manager creates or links the accounts on an endpoint with global users. By correlating accounts, you can specify what fields are matched with global user fields. CA Identity Manager provides a default correlation account template for CA Access Control endpoints. This account template performs the following actions in this order:

    1. CA Identity Manager attempts to match the account name with each existing global user's unique name. If a match is found, CA Identity Manager associates the CA Access Control account with the global user. If a match is not found, CA Identity Manager performs the next step.
    2. CA Identity Manager attempts to match the full name with each existing global user's full name. If a match is found, CA Identity Manager associates the CA Access Control account with the global user. If a match is not found, CA Identity Manager performs the next step.
    3. If the Create Global Users as Needed button is selected, CA Identity Manager creates a new global user and then associates the CA Access Control account with the global user. If the Create Global Users as Needed button is cleared, CA Identity Manager performs the next step.
    4. CA Identity Manager associates the CA Access Control account with the [default user] object.