Previous Topic: Configure an RDB Administrator Store Connection

Next Topic: Update External Administrator Store Credentials

Migrate Legacy Administrator Permissions

If a Legacy Administrator must continue using the Administrative UI or Policy Server tools after configuring a connection to an external administrator store, migrate the permissions.

Important! External administrator authentication does not let a single Legacy Administrator account retain rights to the Administrative UI, Policy Server tools, the FSS Administrative UI, the Policy Management API, and Trusted Host privileges at the same time. If a Legacy Administrator must continue functioning in one or more of these roles, leave the Legacy Administrator unchanged. Be sure that the user is present in the external store and separately configure a new Administrator using the external user identity.

To migrate permissions

  1. Be sure that the administrator is present in the external store.
  2. Log into the Administrative UI using the external super user.
  3. Click Administration, Administrators, Administrator, Modify Administrator.

    The Search dialog opens.

  4. Specify search criteria using the full name of the user and click Search.

    Users matching the search criteria appear.

  5. Select the Legacy Administrator you want and click Select.

    The user path points to the policy store.

  6. Click Lookup in the Details group box.

    The Select a User dialog appears.

  7. Specify search criteria and click Search.

    Users matching the specified criteria appear.

  8. Select the user you want and click Select.

    The user path is updated to point to the external store.

  9. Click Submit.

    The Administrative UI authenticates the administrator using the external store. The administrator has the same level of access to the Administrative UI when the policy store was being used to store administrator identities.


Copyright © 2010 CA. All rights reserved. Email CA about this topic