Previous Topic: Organization Selectors

Next Topic: Provisioning Directory

Provisioning

Use this screen when you are using Identity Manager with provisioning.

Note: A more detailed procedure, setting up provisioning for an Identity Manager environment, provides step by step instructions.

The Provisioning Properties options are as follows:

Enabled

Specifies the use of two user stores, one for Identity Manager and one (called the Provisioning Directory) for provisioning accounts.

Use Session Pool

Enables the use of a session pool.

Session Pool Initial Sessions

Defines the minimum number of sessions that are available in the pool at startup.

Default: 8

Session Pool Maximum Sessions

Defines the maximum number of sessions in the pool.

Default: 32

Enable Password Changes from Endpoint Accounts

Defines the setting for the Enable Password Synchronization Agent for each user in the Provisioning Server. This will allow password synchronization between Identity Manager users and associated endpoint accounts.

Enable Accumulation of Provisioning Role Membership Events

If enabled, this checkbox ensures that CA Identity Manager executes the events related to provisioning role membership in a specific order. All Add actions are combined into a single operation and sent to the Provisioning Server for processing. Once processing of the Add actions completes, CA Identity Manager combines the Remove actions into a single operation and sends that operation to the Provisioning Server. A single event, called AccumulatedProvisioningRoleEvent, is generated to execute the events in this order.

Note: For more information about the AccumulatedProvisioningRoleEvent, see the Administration Guide.

Organization for Creating Inbound Users

Defines the fully qualified path to the user store used by Identity Manager. This field appears only when the user store includes an organization.

Inbound Administrator

Defines an Identity Manager administrator account that can execute tasks mapped to inbound mappings. These tasks are included in the Provisioning Synchronization Manager role. The administrator must be able to execute each task on any Identity Manager user.