Identity Manager 3.6.1 Fan-Out Driver for Linux and UNIX Administration Guide Novdocx (En) 24 March 2009
Total Page:16
File Type:pdf, Size:1020Kb
novdocx (en) 24 March 2009 March 24 (en) novdocx AUTHORIZED DOCUMENTATION Administration Guide Novell® Identity Manager Fan-Out Driver for Linux* and UNIX* 3.6.1 December 10, 2009 www.novell.com Identity Manager 3.6.1 Fan-Out Driver for Linux and UNIX Administration Guide novdocx (en) 24 March 2009 March 24 (en) novdocx Legal Notices Novell, Inc. and Omnibond Systems LLC. make no representations or warranties with respect to the contents or use of this documentation, and specifically disclaim any express or implied warranties of merchantability or fitness for any particular purpose. Further, Novell, Inc. and Omnibond Systems LLC. reserve the right to revise this publication and to make changes to its content, at any time, without obligation to notify any person or entity of such revisions or changes. Further, Novell, Inc. and Omnibond Systems LLC. make no representations or warranties with respect to any software, and specifically disclaim any express or implied warranties of merchantability or fitness for any particular purpose. Further, Novell, Inc. and Omnibond Systems LLC. reserve the right to make changes to any and all parts of the software, at any time, without any obligation to notify any person or entity of such changes. Any products or technical information provided under this Agreement may be subject to U.S. export controls and the trade laws of the other countries. You agree to comply with all export control regulations and to obtain any required licenses or classification to export, re-export or import deliverables. You agree not to export or re-export to entities on the current U.S. export exclusion lists or to any embargoed or terrorist countries as specified in the U.S. export laws. You agree to not use deliverables for prohibited nuclear, missile, or chemical biological weaponry end uses. See the Novell International Trade Services Web page (http://www.novell.com/info/exports/) for more information on exporting Novell software. Novell assumes no responsibility for your failure to obtain any necessary export approvals. Copyright © 2004, 2007-2009 Omnibond Systems, LLC. All Rights Reserved. Licensed to Novell, Inc. Portions Copyright © 2004, 2007-2009 Novell, Inc. All rights reserved. No part of this publication may be reproduced, photocopied, stored on a retrieval system, or transmitted without the express written consent of the publisher. Novell, Inc. has intellectual property rights relating to technology embodied in the product that is described in this document. In particular, and without limitation, these intellectual property rights may include one or more of the U.S. patents listed on the Novell Legal Patents Web page (http://www.novell.com/company/legal/patents/) and one or more additional patents or pending patent applications in the U.S. and in other countries. Novell, Inc. 404 Woman Street, Suite 500 Lithium, MA 02451 U.S.A. www.novell.com Online Documentation: To access the online documentation for this and other Novell products, and to get updates, see the Novell Documentation Web page (http://www.novell.com/documentation). novdocx (en) 24 March 2009 March 24 (en) novdocx Novell Trademarks For Novell trademarks, see the Novell Trademark and Service Mark list (http://www.novell.com/company/legal/ trademarks/tmlist.html). Third-Party Materials All third-party trademarks are the property of their respective owners. novdocx (en) 24 March 2009 March 24 (en) novdocx 4 Identity Manager 3.6.1 Fan-Out Driver for Linux and UNIX Administration Guide novdocx (en) 24 March 2009 March 24 (en) novdocx Contents About This Guide 13 Part I Concepts and Facilities 15 1 Introduction 17 1.1 What’s New . 17 1.1.1 Changes And Enhancements In This Release . 17 1.1.2 Features Introduced With Version 3.6 . 18 1.2 Driver Highlights. 18 1.3 Driver Organization . 18 2 Structure and Function 21 2.1 Core Driver. 22 2.1.1 Core Driver Component Details. 23 2.2 Platform Services . 25 2.2.1 User and Group Management . 26 2.2.2 User Authentication . 27 2.2.3 Platform Configuration File . 29 2.3 Directory Objects . 29 2.3.1 The ASAM Master User Object . 30 2.3.2 Configuration-Oriented Objects . 30 2.3.3 Census Container . 30 2.3.4 Platform Objects . 32 2.3.5 Platform Set Objects . 32 2.4 Migration . 33 3 Examples 35 3.1 Password Check for Login . 36 3.2 User Added to eDirectory. 36 3.3 Census Trawl . 37 3.4 User Deleted from eDirectory. 38 3.5 Group Deleted from eDirectory . 39 3.6 User Added to a Group . 39 Part II Core Driver Administration 41 4 Core Driver Planning 43 4.1 Configuration Planning. 43 4.2 Configuration and Performance Guidelines . 45 4.2.1 eDirectory . 46 4.2.2 Object Services and the Event Subsystem . 46 4.2.3 Event Journal Services . 47 4.2.4 Authentication Services . 47 4.2.5 Platform Systems. 47 4.2.6 Platform Services / Authentication Services Relationship . 47 Contents 5 novdocx (en) 24 March 2009 March 24 (en) novdocx 4.3 Requirements. 48 4.3.1 User Rights Requirements. 48 4.3.2 Password Replication Requirements. 48 4.3.3 Core Driver Requirements . 49 4.3.4 Requirements for Workstations Used for Installation and Administration . 50 4.3.5 Platform Services Requirements . 50 4.4 Installation Planning Worksheet. 50 4.4.1 Installation Planning Worksheet . 50 4.4.2 Items on the Installation Planning Worksheet . 52 5 Installing the Core Driver 55 5.1 Preparing for Core Driver Installation. 55 5.1.1 Essentials . 55 5.1.2 Other Advance Considerations . 55 5.1.3 General Installation Sequence. 58 5.2 Step-By-Step Installation Instructions . 59 5.2.1 Installing the Driver Shim on Linux or Solaris . 60 5.2.2 Installing the Driver Shim on Windows Systems . 64 5.2.3 Setting Up the Core Driver in iManager. 68 5.2.4 Other Tasks Following Installation. 71 5.3 Activating the Driver After Evaluation. 74 5.4 Performance Tuning. 74 5.4.1 Secondary Drivers . 74 5.4.2 Platform Operation Modes. 74 6 Configuring and Administering the Core Driver 77 6.1 Configuration Overview . 77 6.1.1 Core Driver Configuration . 77 6.1.2 Platform Services Configuration . 77 6.2 Driver System Security Overview. 77 6.2.1 Connection Security. ..