This section discusses driver configuration details specific to the Identity Manager Driver for Top Secret. For basic configuration information, see the Identity Manager 3.6.1 Administration Guide on the Identity Manager 3.6.1 Documentation Web site. For detailed information about configuring the driver, see Section 5.0, Configuring the Top Secret Driver.
Topics include
Filters and policies control the data flow of users and groups to and from the connected system and the Identity Vault. The
option, specified during driver import, determines how these filters and policies behave.Bidirectional: Sets classes and attributes to be synchronized on both the Subscriber and Publisher channels.
Application to Identity Vault: Sets classes and attributes to be synchronized on the Publisher channel only.
Identity Vault to Application: Sets classes and attributes to be synchronized on the Subscriber channel only.
The
option, specified during driver import, determines whether the driver sets preconfigured OMVS (UNIX System Services) attributes for new users in the security system.The attributes you can configure are:
OMVSPGM: The default program (login shell)
UID Assignment: Whether UID and GID numbers are assigned by the security system or by the Identity Vault
HOME: The default home directory
The
option, specified during driver import, determines whether the driver sets preconfigured Time Sharing Option (TSO) information for new users in the security system.The attributes you can configure are:
TSOLACCT: The default account number
TSOLPROC: The default logon procedure
TSOUNIT: The default unit name
The Metadirectory engine uses filters to control which objects and attributes are shared. The default filter configuration for the driver allows objects and attributes to be shared as described in the following table:
Table 1-1 Default Filter and Schema Mapping
The Metadirectory engine uses policies to control the flow of information into and out of the Identity Vault. The following table describes the policy functions for the driver in the default configuration:
Table 1-2 Default Driver Policy Functions