3.6 Configuring Credential Provisioning Policies for Novell SecureLogin

After the repository and application objects are created, policies need to be created to provision SecureLogin information. The policies can be created in Designer or iManager.

3.6.1 Creating Credential Provisioning Policies for Novell SecureLogin in Designer

The policies use the information stored in the repository and application objects.

  1. In the Policy Builder, create a new policy.

  2. (Optional) To clear the SSO credential, so objects can be deprovisioned, select the clear SSO credential action, then fill in the following fields:

    • Specify Credential Repository Object DN: Browse to and select the repository object. (See worksheet item 8).

    • Specify Target User DN: Create the DN of the target users by using the Argument Builder. (See worksheet item 15).

    • Specify Application Credential ID: Specify the application ID. (See worksheet item 9).

    • Specify Login Parameter Strings: Launch the String Builder and enter each authentication key for the application. (See worksheet item 10).

  3. (Optional) To set the SSO credential when a user object is created or when a password is modified, select the set SSO credential action, then fill in the following fields:

    • Specify Credential Repository Object DN: Browse to and select the repository object. (See worksheet item 8).

    • Specify Target User DN: Create the DN of the target users by using the Argument Builder. (See worksheet item 15).

    • Specify Application Credential ID: Specify the application ID. (See worksheet item 9).

    • Specify Login Parameter Strings: Launch the String Builder and enter each authentication key for the application. (See worksheet item 10).

  4. (Optional) To create a SecureLogin passphrase and answer for a user object when it is provisioned, select the set SSO passphrase action, then fill in the following fields:

    • Specify Credential Repository Object DN: Browse to and select the repository object. (See worksheet item 8).

    • Specify Target User DN: Create the DN of the target users by using the Argument Builder. (See worksheet item 15).

    • Question String: Specify the passphrase question. (See worksheet item 16).

    • Answer String: Specify the passphrase answer. (See worksheet item 16).

3.6.2 Creating Credential Provisioning Policies for Novell SecureLogin in iManager

The policies use the information stored in the repository and application objects.

  1. In the Policy Builder, create a new policy.

  2. (Optional) To clear the SSO credential, so objects can be deprovisioned, select the clear SSO credential action, then fill in the following fields:

    • Enter Credential Repository Object DN: Browse to and select the repository object. (See worksheet item 8).

    • Enter Target User DN: Create the DN of the target users by using the Argument Builder. (See worksheet item 15).

    • Enter Application Credential ID: Specify the application ID. (See worksheet item 9).

    • Enter Login Parameter Strings: Launch the String Builder and enter each authentication key for the application. (See worksheet item 10).

  3. (Optional) To set the SSO credential when a user object is created or when a password is modified, select the set SSO credential action, then fill in the following fields:

    • Enter Credential Repository Object DN: Browse to and select the repository object. (See worksheet item 8).

    • Enter Target User DN: Create the DN of the target users by using the Argument Builder. (See worksheet item 15).

    • Enter Application Credential ID: Specify the application ID. (See worksheet item 9).

    • Enter Login Parameter Strings: Launch the String Builder and enter each authentication key for the application. (See worksheet item 10).

  4. (Optional) To create a SecureLogin passphrase and answer for a user object when it is provisioned, select the set SSO passphrase action, then fill in the following fields:

    • Enter Credential Repository Object DN: Browse to and select the repository object. (See worksheet item 8).

    • Enter Target User DN: Create the DN of the target users by using the Argument Builder. (See worksheet item 15).

    • Enter Question and Answer Strings: Launch the String Builder and enter the passphrase question and answer. (See worksheet item 16).