Previous Topic: Organization SelectorsNext Topic: Provisioning Directory


Provisioning

Use this screen when you are using CA IdentityMinder with provisioning.

Note: A more detailed procedure, How to Configure an Environment for Provisioning, provides step by step instructions.

The Provisioning Properties options are as follows:

Enabled

Specifies the use of two user stores, one for CA IdentityMinder and a separate user store (called the Provisioning Directory) for provisioning accounts. If this option is disabled, only the CA IdentityMinder user store is used.

Use Session Pool

Enables the use of a session pool.

Session Pool Initial Sessions

Defines the minimum number of sessions that are available in the pool at startup.

Default: 8

Session Pool Maximum Sessions

Defines the maximum number of sessions in the pool.

Default: 32

Enable Password Changes from Endpoint Accounts

Defines the setting for the Enable Password Synchronization Agent for each user in the Provisioning Server. This option allows password synchronization between CA IdentityMinder users and associated endpoint accounts.

Enable Accumulation of Provisioning Role Membership Events

If enabled, this checkbox ensures that CA IdentityMinder executes events that are related to the provisioning role membership in a specific order. All Add actions are combined into a single operation and sent to the Provisioning Server for processing. Once processing of the Add actions completes, CA IdentityMinder combines the Remove actions into a single operation and sends that operation to the Provisioning Server. A single event, called AccumulatedProvisioningRoleEvent, is generated to execute the events in this order.

Note: For more information about the AccumulatedProvisioningRoleEvent, see the Administration Guide.

Organization for Creating Inbound Users

Defines the fully qualified path to the user store that CA IdentityMinder uses. This field appears only when the user store includes an organization.

Inbound Administrator

Defines a CA IdentityMinder administrator account that can execute tasks that are mapped to inbound mappings. These tasks are included in the Provisioning Synchronization Manager role. The administrator must be able to execute each task on any CA IdentityMinder user.