Integrating with the Identity Management Service
By default, IBM Software Hub user records are stored in an internal repository database. However, it is strongly recommended that you use an enterprise-grade password management solution, such as single sign-on (SSO) or LDAP.
If you use LDAP, you can choose between the following options:
| Mechanism | Details |
|---|---|
| LDAP integration provided by IBM Software Hub (deprecated) | When you install IBM Software Hub, the
Identity Management Service is automatically enabled. If
you want to use the LDAP integration provided by IBM Software Hub, see Configuring IBM Software Hub to use the embedded LDAP integration. After you configure IBM Software Hub to use the embedded LDAP integration, see Connecting to your identity provider.
|
| LDAP integration provided by the IBM Cloud Pak foundational services Identity Management Service | When you install IBM Software Hub, the
Identity Management Service is automatically enabled.
However, if you upgrade from an older release of IBM Software Hub and the Identity Management Service is not enabled, you can use the
|
- Who needs to complete this task?
-
Instance administrator An instance administrator can complete this task.
- When do you need to complete this task?
-
Complete this task if you upgraded IBM Software Hub to Version 5.2 and you want to use the LDAP integration provided by the Identity Management Service.
If you installed IBM Software Hub Version 5.2, you don't need to complete this task. IBM Software Hub is already integrated with the Identity Management Service.
Before you begin
Ensure that you source the environment variables before you run the commands in this task.
About this task
You can use the setup-iam-integration command to integrate
IBM Software Hub with the Identity Management Service. When you integrate with the Identity Management Service, you delegate all authentication to the
Identity Management Service.
If you onboard users before you integrate with the Identity Management Service, existing users might not be able to log in to IBM Software Hub.
Procedure
What to do next
- Determine whether you need to update name of the default administrative user that is created by the Identity Management Service.
- Connect to your LDAP servers. For more information, see Configuring an LDAP connection in the IBM Cloud Pak foundational services documentation.