AMC in the Integrated Solutions Console

You can view the list of changes integrated in the AMC, learn to add and remove users, and different kind of roles that can be assigned through the information provided here.

The Integrated Solutions Console (ISC) is designed to offer a common console to organize administrative console functions using industry-standard technologies. Starting with IBM Security Directory Integrator 7.0, integration of the AMC into the Integrated Solutions Console (ISC) comes with the following changes. The primary navigation links for AMC are:
  • Administration and Monitoring Console
    • Servers
    • Solution Views
    • Monitor Status
    • Action Manager
  • Advanced
    • Log Management
    • Console Properties
    • Preferred Solution Views
    • Property Stores

Console user authority

Using ISC Console User Authority, you can add and remove users to AMC. In the AMC for IBM Security Directory Integrator v7.0 and later, the following roles are applicable:
Table 1. AMC roles
User Role Description
administrator Users with this role assigned are able to configure the roles other users are assigned to.
iscadmins Users with this role assigned have the ability to control the settings of the ISC console itself.
Security Directory Integrator AMC Admin This role is considered by the IBM Security Directory Integrator AMC application deployed in the ISC console. Users with this role assigned are able to administer Servers, Solutions View roles, Manage Console Properties. (This was the superadmin role in the AMC prior to IBM Security Directory Integrator 7.0)
Security Directory Integrator AMC User This role is considered by the IBM Security Directory Integrator AMC application deployed in the ISC console. Users with this role assigned are able to use the provided by the IBM Security Directory Integrator AMC Admin resources.
Within the SDI AMC user role, user privileges are assigned roles found in the Solution View:
  • Admin
  • Config Admin
  • Execute
  • Read

The roles control access to functions on the console. You can see only those functions for which you have roles assigned. For example, users with the Security Directory Integrator AMC Admin role automatically have administrator privileges over all Solution Views. Administrators can configure the properties required for the Web administration tool (modifying properties related to amc.properties file, available from Console Properties in the left navigation pane). A user with the Security Directory Integrator AMC User role in ISC is the same as the current non-admin AMC user. Security Directory Integrator AMC Users cannot access any administrative windows such as IBM Security Directory Integrator Servers and Console Properties.

ISC features the AMC Admin Group or iscadmins. A user in the iscadmins group has the same privileges as the administrator.

Administrator and the iscadmins group

The administrator, defined as the user who has installed the application, can manage AMC users. The administrator can add or remove users from the local OS Registry to the AMC application and assign or edit roles. IBM Security Directory Integrator v7.0 and later offers a new SDI AMC Admin group. The superadmin role does not exist after IBM Security Directory Integrator version 6.1.1.