B.2 Global Configuration Values

Global configuration values (GCVs) allow you to specify settings for the Identity Manager features such as Password Synchronization and driver heartbeat, as well as settings that are specific to the function of an individual driver configuration. Some GCVs are provided with the drivers, but you can also add your own.

IMPORTANT:Password Synchronization settings are GCVs, but it’s best to edit them in the graphical interface provided on the Server Variables page for the driver, instead of the GCV page. The Server Variables page that shows Password Synchronization settings is accessible as a tab like other driver parameters, or by clicking Password Management > Password Synchronization, searching for the driver, and clicking the driver name. The page contains online help for each Password Synchronization setting.

In iManager:

  1. Click Identity Manager > Identity Manager Overview, then click Search to search for the driver set that is associated with the driver.

  2. Browse to the driver, then click the upper right corner of the driver icon.

  3. Click Edit Properties > Global Config Values.

In Designer:

  1. Open a project in the Modeler, then right-click the driver line and select Properties > Global Config Values.

For Password Configuration, you should only edit the first two settings listed here. The others are GCVs regarding Password Synchronization that are common to all drivers. They should be edited using iManager in Passwords > Password Synchronization, not here. Some of them have dependencies on each other that are represented only in the iManager interface. They are explained in Password Synchronization across Connected Systems in the Novell Identity Manager 3.5.1 Administration Guide .

Table B-1 Global Configuration Values > Password Configuration

Option

Description

Identity Manager accepts passwords from application

If True, allows passwords to flow from the connected system to Identity Manager.

Publish passwords to NDS password

Use the password from the connected system to set the non-reversible NDS® password in eDirectory.

Publish passwords to Distribution Password

Use the password from the connected system to set the NMAS™ Distribution Password used for Identity Manager password synchronization.

Require password policy validation before publishing passwords

If True, applies NMAS password policies during publish password operations. The password is not written to the data store if it does not comply.

Notify the user of password synchronization failure via e-mail

If True, notify the user by e-mail of any Password Synchronization failures.

Connected System or Driver Name

The name of the connected system, application, or Identity Manager driver. This value is used by the e-mail notification templates.

Password Failure Notification User

Password Synchronization policies are configured to send e-mail notifications to the associated user when password updates fail. To send a notification copy, specify the DN of that user. Otherwise, leave this field blank.

Active Users Container

The name of the Organizational Unit object where Active users will be placed. Specify the DN of the OU object. Otherwise, leave this field blank.

Inactive Users Container

The name of the Organizational Unit object where the inactive users will be placed. Specify the DN of the OU object. Otherwise, leave this field blank.

Active Employees Group

The name of the Group object where Active Employee users will be added. Specify the DN of the object. Otherwise, leave this field blank.

Active Managers Group

The name of the Group object where Active Manager users will be added. Specify the DN of the object. Otherwise, leave this field blank.