12.07.2015 Views

CA Identity Manager Implementation Guide - CA Technologies

CA Identity Manager Implementation Guide - CA Technologies

CA Identity Manager Implementation Guide - CA Technologies

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Decide User Store Requirements<strong>CA</strong> Audit Considerations<strong>CA</strong> Audit is an audit management system that enables you to collect and storesecurity related data for auditing, reporting, compliance verification and eventmonitoring.To integrate with <strong>CA</strong> Audit, you install the iRecorder component when you installthe <strong>Identity</strong> <strong>Manager</strong> Server. The iRecorder retrieves events from <strong>CA</strong> <strong>Identity</strong><strong>Manager</strong>. Based on policies in the <strong>CA</strong> Audit Policy <strong>Manager</strong>, the iRecorder ignoresthe event or routes it through to <strong>CA</strong> Audit.Decide User Store RequirementsAn <strong>Identity</strong> <strong>Manager</strong> implementation must include a user store that contains theuser identities that <strong>Identity</strong> <strong>Manager</strong> maintains. Typically, this is an existing userstore that an enterprise uses to store information about its users, such asemployees and customers.If your implementation includes provisioning, <strong>Identity</strong> <strong>Manager</strong> also requires aprovisioning directory that includes global users, which are associated withaccounts on endpoints such as Microsoft Exchange, Active Directory, and Ingres.How to Choose a User Store SolutionTo manage an existing user store, use <strong>CA</strong> <strong>Identity</strong> <strong>Manager</strong> to manage it, andthen create a separate Provisioning Directory. However, in implementationswhere you can choose a user store option, consider the key differences in thefollowing table.CapabilitySeparate UserStore andProvisioningDirectorySingle User Store andProvisioning DirectoryUser Object Support Yes Yes (custom schema)Group Object Support Yes Yes (custom schema)Group MembershipSupportOrganization ObjectSupportDirect ProvisioningSupportYesYesNoYes (proprietary model)NoYesChapter 4: Planning Your <strong>Implementation</strong> 49

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!