IBM Support

How to create users in MDM and/or IIS Cloud Managed Service LDAP server

How To


Summary

The following are instructions for using the "custadmin" userid to create new users in the Managed MDM-provided LDAP environment.

Environment

This how-to applies to the IIS on Cloud Managed (latest version) and the MDM on Cloud managed cloud services environments where an appropriate Cloud LDAP server is delivered as part of the cloud services.  
Note: Not all cloud managed services include the FreeIPA Cloud IDM/LDAP.

Steps

Logging into FreeIPA (RedHat Identity Manager)

Open the following URL:

https://<hostname>/ipa/ui

where <hostname> is the fully-qualified hostname for the LDAP primary host, usually the "idp1" server

Enter the custadmin user credentials and click the [Login] button

 image 4139

Creating a New User after Logging In as custadmin

 The Active Users page is displayed.  To add a new user, click the [+Add] button

 image 4197

 Enter the desired user login (userid), First Name, Last Name and (temporary) password information, then click the [Add] or [Add and Add Another] button, or [Cancel] to abort.

NOTE:  You need to enter a temporary password here.  A password is required so that the new user can login and set their final password.

image 4198

The password provided here must be changed at the first login for the userid.

 NOTE:  If no password is entered in the window above, you will need to contact the Managed Support team to set a temporary password for the new userid.  The custadmin user cannot alter the password of an already-existing user.

 After clicking the [Add] button, the new userid has been created and is now displayed in the Active Users page.

image 4199

 

 

At this point, the new user has been created and custadmin can either create another user or logout of the IdM UI.

Updating the Password for the New User

 The new user must login to FreeIPA in order to set its final password.  Any password set by the custadmin user is temporary and must be changed at first login.

The new userid can login to the same URL in order to set its final password.

 image 4200

 The user will be prompted to enter the existing (temporary) password and a new password.  After doing so, click the [Reset Password and Login] button to accept the new password, or [Cancel] to abort the change.

 image 4201

The user's settings page is displayed.  Here they can update their own information or change their password.

 image 4202

Limitations

  • The custadmin user can only create new users
  • The custadmin user cannot create new groups.  Please contact Managed Support for assistance
  • The custadmin user can only set a temporary password when creating a new user.  Custadmin cannot change/reset passwords for existing users.  Please contact Managed Support for assistance
  • The custadmin user cannot add new users to a group.  Please contact Managed Support for assistance
  • The custadmin user cannot delete existing users.  Please contact Managed Support for assistance

 

 

Document Location

Worldwide

[{"Business Unit":{"code":"BU053","label":"Cloud & Data Platform"},"Product":{"code":"SSGLWG","label":"IBM Master Data Management on Cloud"},"ARM Category":[],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"All Version(s)","Line of Business":{"code":"LOB10","label":"Data and AI"}},{"Business Unit":{"code":"BU053","label":"Cloud & Data Platform"},"Product":{"code":"SSGLHQ","label":"IBM Information Server on Cloud"},"ARM Category":[],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"All Version(s)","Line of Business":{"code":"","label":""}}]

Document Information

Modified date:
12 June 2020

UID

ibm16228818