Previous Topic: Create Logs for CA SupportNext Topic: Connect to CA IAM CS from JXplorer


Change the Administrator Password for CA IAM CS

To ensure better security across a deployment you can change the password of the administrative user of CA IAM CS.

CA IAM CS remembers all passwords for all users since it was last restarted. All of these passwords are accepted as valid for bind requests. Each user can reset only their own cache.

The cache of old passwords is useful for a system where many applications connect to one connector server. In this situation, the applications may not update their stored passwords for CA IAM CS at the same time, but they can still access the connector server.

However, these old passwords make your system potentially insecure. To make the connector server forget the old passwords, clear the password cache. To clear a password cache, you must be logged in as that user.

Follow these steps:

  1. Log in to CA IAM CS as the administrator and change the password.
  2. Update the password stored in all provisioning servers and any other clients that connect to CA IAM CS.
  3. Log in to CA IAM CS as the administrator.
  4. Choose the Reset Password Cache option in your username menu in the top right.

    The following example shows the menu for a user named admin:

    The menu under your user name contains the options "Account Details, "Change Password" and "Reset Password Cache"