Saturday, September 20, 2008

How to grant SSO Administrator role to an user?

When the SSO server is accessed first time, only one SSO administrator exists:orcladmin, the OracleAS super user.
To exercise your role as a single-sign on administrator, you should be a member of iASAdmins group. 
To assign an user to iASAdmins, 
  1. Start Oracle Directory Manager& login as cn=orcladmin, the directory super user
  2. In the System Objects frame, click in succession the following entries:
  • Entry Management
  • dc=default_identity_management_realm
  • cn=OracleContext
  • cn=Groups
  • cn=iASAdmins
For example:cn=iASAdmins,cn=Groups,cn=OracleContext,dc=company,dc=com
    3. Add the user's full DN in the "uniquemembers" entry. Please see the image below for reference.

  

No comments:

Post a Comment