IBM Security Identity Governance and Intelligence, Version 5.2.3.1

Virtual appliance command-line interface commands

Find information about the sub sections of the virtual appliance CLI command that is specific to IBM® Security Identity Governance and Intelligence. The initial virtual appliance settings wizard runs the first time that an administrator logs on to the command-line interface (CLI) of an unconfigured virtual appliance.

The IBM Security Identity Governance and Intelligence virtual appliance CLI commands are broadly divided into the following main sections:
  • Current mode commands
  • Global commands
In the current mode commands, the igi command is used to work with the IBM Security Identity Governance and Intelligence settings. When an Administrator or a user enters the igi command, the following sub sections are listed.

connectors

connector_files
Provides options to list or delete connector files that were copied to the appliance.
ssh_keys
Provides options to accept, list, or delete the keys that are used for passwordless Secure Shell (SSH).
sub_directories
Provides options to create, delete, and list subdirectories that can be used for connector files.
user_settings
Provides the option to change the igiuser password that is used transferring connector files in the virtual appliance.

jvm_property

add
Adds a JVM property in the application server.
delete
Deletes an existing JVM property from the application server.
update
Updates an existing JVM property in the application server.

logs

clear
Clears the backlog files on the system.
clear_ffdc
Clears all the FFDC log files on the system.
monitor
Provides options to monitor the log files on the system.

postgres

postgres_cmd
Provides the option to log in to the Postgres database administrator console.

upgrade

The sub section provides options to work with IBM Security Identity Governance and Intelligence firmware updates.
delete
Deletes firmware updates from the system.
install
Installs the available firmware update to the system.
list
Lists firmware updates from a USB device.
transfer
Transfers firmware update from a USB device to the system.

utilities

arcs_configuration_snc
Provides the following options to enable the Access Risk Controls for SAP module to work over a FIPS connection.
create_credv2_file
Creates the cred_v2 credentials file.
create_pse_file
Creates the Personal Security Environment (PSE) file.
export_client_certificate
Creates the client certificate and exports it to a file.
import_sap_server_certificate
Imports the SAP server certificate to the PSE on the virtual appliance.
ib_settings
Provides options to work with the Identity Brokerage settings.
ib_password_reset
Resets the Identity Brokerage administrative password.
ib_recon_failure_threshold
Provides options to work with the value of the reconciliation failure threshold setting.
ib_recon_timeout
Provides options to work with the value of the reconciliation timeout setting.
ib_api
Provides the status of the Identity Brokerage API, and enables or disables the Identity Brokerage API.
users
Provides options to manage Identity Brokerage users.
change_password
Changes the password of an Identity Brokerage user.
create
Provides options to create an Identity Brokerage user and assign a password.
deactivate
Changes the status of a user to inactive.
list
Shows the Identity Brokerage users and their status.
reactivate
Changes the status of an inactive user to active.
scheduler
Provides the status of the scheduler, and enables or disables the scheduler.
session_timeout
Provides options to work with the timeout interval for desk and administrative user interfaces.

verbose_gc

disable
Disables verbose garbage collection.
enable
Enables verbose garbage collection.
status
Shows whether verbose garbage collection is enabled or disabled.
More information can be obtained by entering help on any of the subcommands.