After you import the adapter profile on the Security Identity Governance and Intelligence server, add a connector so that Security Identity Governance and Intelligence server can communicate with the
managed resource.
Procedure
-
Log in to the Security Identity Governance and Intelligence
Administration Console.
-
From the Administration Console, select
Enterprise Connectors.
- Select .
A list of connectors is displayed on the Connectors
tab.
- Optional:
Click Filter to toggle the filter on to refine
your search results, or click Hide Filter to toggle the filter off. When the
filter is visible, you can specify search criteria for your requests, and then click
Search.
- Optional: To view all of the columns in the list of connectors, expand the
Connectors pane.
- Click .
The Connector Details pane is enabled for your input.
-
On the Connector Details tab, complete these steps:
-
Assign a name and description for the connector.
-
Select the target profile type as
Identity Brokerage and its corresponding
target profile.
-
Select the entity, such as Account or User.
Depending on the connector type, this field might be preselected.
- Optional:
Select Trace ON and the corresponding Trace Level
to enable trace logs.
The available trace levels are DEBUG, INFO, and ERROR.
- Optional:
Select History ON to save and track the connector usage.
-
Click Save.
The fields for enabling the channels for sending and receiving data are now
visible.
- Select the channel modes that you want to enable.
- Click Save.
- Select Driver Configuration tab.
- Under Service section, in the Security Directory Integrator location, specify
the URL for the IBM® Security Directory Integrator instance. The valid
syntax for the URL
is.rmi://ip-address:port/ITDIDispatcher.
- Under Connection section, provide values for Access
Key Id and Secret Access Key.
- Default value for Region is
us-east-1. Leave
this value empty if you do not want to change the default value.
- Select Enable Reconcile Roles check box to monitor roles in
AWS.
- Click Save.
- Click Test Connection.
- Select Channel-Write To tab.
- Click the Mapping icon.
- Click Map button to map the attribute
eruid to
CODE.
- Click Map button to map the attribute
erpassword to PASSWORD.
- Select Channel-Read From tab.
- Click the Mapping icon.
- Click Map button to map the attribute
CODE to
eruid.
- Click Map button to map the attribute
PASSWORD
to erpassword.
Results
The connector is saved and added to the list of connectors in the
Connectors pane and required attributes are mapped.