IBM Security Access Manager (8.0)+
Connector name |
|
Connector type | Executable |
Type (UI field value) | IBM Security Access Manager |
Target system versions supported / tested | IBM Security Access Manager server versions 8.0 or greater |
Connector status / support | Customer-Verified Clients may contact Bravura Security support for assistance with this connector. Troubleshooting and testing must be completed in the client's test environment as Bravura Security does not maintain internal test environments for the associated target system. |
The following Bravura Security Fabric operations are supported by this connector:
user verify password
get server information
administrator reset password
enable account
disable account
check account enabled
create account
delete account
update attributes
list account attributes
add user to group
delete user from group
List:
accounts
attributes
groups
members
For a full list and explanation of each connector operation, see Connector operations.
Preparation
Before you can target IBM Security Access Manager from Bravura Security Fabric you must:
Create an administrator account that can be used to log into the IBM Security Access Manager server.
( Optional) If the administrator account does not have sufficient permissions to perform policy administration tasks, create a security master account (sec_master) in the IBM Security Access Manager server’s iv-admin group. This will be identified as the system password.
Targeting the IBM Security Access Manager server
For each IBM Security Access Manager server, add a target system in Bravura Security Fabric (Manage the system > Resources > Target systems):
Type is IBM Security Access Manager .
Address uses the following options:
Server The IBM Security Access Manager’s host name or IP address.
(key: server)
Port The TCP port number.
(key: port)
Connection over SSL Switch connection over SSL protocol. Default is "true".
(key: ssl)
Validate the server's certificate with connecting determines whether to validate the server’s security certificate for SSL connection. Default is "true".
(key: checkCert)
HTTP Network Proxy specifies a proxy URL to use for connecting.
(key: proxy)
Enable on reset enables an account after a password reset.
(key: enableOnReset)
The address is entered in the following syntax:
{server=<server name>;port=<port>;[proxy=<URL>;][ssl=<true|false>;][checkCert=<true|false>;][enableOnReset=<true|false>;]}
The full list of target parameters is explained in Target system options .
Handling account attributes
You can view the complete list of attributes that Bravura Security Fabric can manage, including native and pseudo-attributes, using the Manage the system (PSA) module. To do this, select IBM Security Access Manager (8.0+) from the Manage the system > Resources > Account attributes > Target system type menu.
For information about the native IBM Security Access Manager attributes managed by Bravura Security Fabric , consult your IBM Security Access Manager documentation.