Managing Password Synchronization

In this section:


Setting the Flow of Passwords Across Systems

The following interface lets you see how your systems are set up to accept or publish passwords. It's available in the Password Synchronization task under the Password Management role.

The first page you see lets you search for drivers for connected systems.


List of connected systems showing whether passwords are allowed to flow on publisher and subscriber channels

The search results show the settings for password flow to and from Identity Manager and the connected systems.


List of connected systems showing whether passwords are allowed to flow on publisher and subscriber channels

To make changes to these settings, you click a connected system driver name. The following page appears, where you can see more detail and change the settings:


Interface for setting password flow for individual driver

On this page, you can set whether Password Policy is enforced for passwords coming in to Identity Manager, and whether Password Policy is enforced on the connected system by resetting the connected system password.

The settings on this page are global configuration values (GCVs), which are stored per server. See Password Synchronization Settings You Create Using Global Configuration Values.


Enforcing Password Policies on Connected Systems

If you are using Advanced Password Rules and are using Identity Manager Password Synchronization, we recommend that you research the password policies for all the connected systems, and then make sure the Advanced Password Rules are compatible.


Keeping the eDirectory Password Separate from the Synchronized Password

This scenario is described in Scenario 4: Tunneling --- Synchronizing Connected Systems but not eDirectory, with Identity Manager Updating the Distribution Password.