Chat now with support
Chat with Support

Identity Manager 8.0 - Administration Guide for Connecting Unix-Based Target Systems

Managing Unix-Based Systems Setting Up Synchronization with a Unix-Based Target System Base Data for Unix-Based Target Systems Unix Host Unix user accounts Unix groups Reports about Unix Objects Appendix: Configuration Parameters for Managing Unix Appendix: Default Project Template for Unix-Based Target Systems

Unix Host

Unix Host

The Synchronization Editor sets up the hosts in the One Identity Manager database by using a default template.

NOTE: After initial synchronization of the hosts, you must enter the primary group, which will be used by default to set up the user accounts.

To edit a Unix host's master data

  1. Select the category Unix | Hosts.

  2. Select the host in the result list.

  3. Select Change master data in the task view.

  4. Edit the host's master data.

  5. Save the changes.
Related Topics

General Master Data for Unix Hosts

General Master Data for Unix Hosts

Enter the following data on the General tab:

Table 22: General Master Data for a Host
Property Description

Host name

Name of the host.

Primary group

User account's primary group. This group is used as primary group when creating a user account.

Device

The computer is connected to this device. Specify a new device using the button next to the menu.

AIX system

Specifies whether this host is an IBM AIX system. The following properties are offered additionally for user accounts on IBM AIX systems.

Account definition (initial)

Initial account definition for creating user accounts. This account definition is used if automatic assignment of employees to user accounts is used for this host and user accounts should be created which are already managed (state "linked configured"). The account definition's default manage level is applied.

User accounts are only linked to the employee (state "Linked") if no account definition is given. This is the case on initial synchronization, for example.

Target System Managers

Application role, in which target system managers are specified for the host. Target system managers only edit the objects from hosts that are assigned to them. Therefore, each host can have a different target system manager assigned to it.

Select the One Identity Manager application role whose members are responsible for administration of this host. Use the button to add a new application role.

Synchronized by

Type of synchronization through which the data is synchronized between the host and One Identity Manager.

Table 23: Permitted Values
Value Synchronization by Provisioned by

One Identity Manager

Active Directory connector

Active Directory connector

No synchronization

none

none

NOTE: You can only specify the synchronization type when adding a new host. No changes can be made after saving.

"One Identity Manager" is used when you create a host with the Synchronization Editor.

NOTE: If you select "No synchronization" you can define custom processes to exchange data between One Identity Manager and the target system.

Operating system description

Description of the operating system.

Distribution

Installed distribution of the operating system.

Distribution version

Version of the installed distribution.

Kernel version

Current version of the kernel.

Operating system type

Type of operating system, for example, Linux, AIX, UNIX.

Specifying Categories for Inheriting Permissions

In One Identity Manager, groups can be selectively inherited by user accounts. For this, groups and user accounts are divided into categories. The categories can be freely selected and are specified by a template. Each category is given a specific position within the template. The template contains two tables; the user account table and the group table. Use the user account table to specify categories for target system dependent user accounts. Enter your categories for the target system dependent groups, administrative roles, subscriptions and disabled service plans in the . Each table contains the category items "Position1" to "Position31".

To define a category

  1. Select the category Unix | Hosts.
  2. Select the host in the result list.
  3. Select Change master data in the task view.
  4. Switch to the Mapping rule category tab.
  5. Expand the respective base node of the user account or group table.
  6. Click to enable category.
  7. Enter a name for the user account and group categories in the current language.
  8. Save the changes.
Detailed information about this topic

How to Edit a Synchronization Project

How to Edit a Synchronization Project

Synchronization projects, in which a host is already used as a base object, can also be opened using the Manager. You can, for example, check the configuration or view the synchronization log in this mode. The Synchronization Editor is not started with its full functionality. You cannot run certain functions, such as, running synchronization or simulation, starting the target system browser and others.

NOTE: The Manager is locked for editing throughout. To edit objects in the Manager, close the Synchronization Editor.

To open an existing synchronization project in the Synchronization Editor

  1. Select the category Unix | Hosts.
  2. Select the host in the result list. Select Change master data in the task view.
  3. Select Edit synchronization project... from the task view.
Related Topics
Related Documents