Preparation
Before Bravura Security Fabric can manage Access Manager accounts, you must:
Install the client software.
Configure a target administrator.
Create at least one template account
The following instructions are for RSA ClearTrust 5.5 / RSA Access Manager 6.0. Details may vary depending on your version of the software.
Installing client software
Before you can target RSA Access Manager, you must install the ClearTrust Java API and the Java Runtime Environment Version 5.0 or above on the Bravura Security Fabric server.
Add the following files to the classpath environment variable on the Bravura Security Fabric server:
Note
When composing a value for classpath, the .jar file must be typed explicitly. It is not enough to include just the directory name.
From the Admin/Runtime APIs, include:
ct_admin_api.jar
asn1.jar
certj.jar
jsafe.jar
ct_runtime_api.jar
jsafeJCE.jar
From the RSA ClearTrust / Access Manager Agent, include:
rsajsse.jar
sslj.jar
Note
RSA ClearTrust / Access Manager agents are not included on the ClearTrust 5.5 / Access Manager 6.0 installation CD. You can obtain the agents from RSA Security SecurCare Online or by contacting RSA. For more information, see your RSA ClearTrust / Access Manager documentation.
From the Bravura Security Fabric agent directory, include:
agtctrust5.jar
Ensure that jvm.dll (from the JRE) has been added to the system path. For example:
C:\Program Files\Java\jre1.5.0_04\bin\client.
Reboot the Bravura Security Fabric server to ensure that changes to your path and classpath environment variables take effect.
Configuring a target system administrator
Bravura Security Fabric uses a designated account (for example, psadmin) on the Access Manager target system to perform operations.
Ensure that all users who will be managed by the product belong to an administrative group that is managed by the target system administrator. Assign the target system administrator a role within the administrative group that has the ability to:
Add, edit, and delete users
Add, edit, and delete user groups
Add, edit, and delete properties
Edit user passwords
Ensure that you set and note the account’s password. You will be required to enter the login ID and password when you add the Access Manager target system to Bravura Security Fabric .
Creating a template account
Bravura Security Fabric uses template accounts as models or "blueprints" for creating new Access Manager accounts. See your RSA Access Manager documentation to learn how to create a template account using the Entitlements Manager.