Novell Home

Novell Identity Manager Driver for ACF2

A Component of the Identity Manager Integration Module for Mainframe

Overview

Note: This driver includes functionality previously available in Novell Account Management 3 for Mainframe.

With Identity Manager Driver for ACF2, you'll enjoy the following features and benefits:

Features
  • User provisioning
  • Password management
  • User self-service
  • Point-and-click customization
  • Role-based administration
  • System-wide auditing and reporting
  • Native script handling
  • Authentication redirection
Benefits
  • Increased operational efficiency
  • Support for compliance with industry regulations
  • Reduced administration and helpdesk costs
  • Reduced security risks
  • Empowered users
  • Enhanced performance of your operating systems
  • Reduced network computing costs

The Identity Manager driver for ACF2 is architected and otherwise known as a "fan-out" driver. The fan-out driver enables you to synchronize information from Identity Manager to many different connected systems using a single driver. The fan-out driver offers delegated logic and control to your system administrators. You can process any Identity Manager data-change event with a script on the platform. Authentication redirection provides login support for a universal password, accessing a central repository for login and password rules. Full bi-directional password synchronization is also supported.

The ACF2 driver is the upgrade path from Novell Account Management. The same extensible scripts are supported to manage users and groups on target platforms, and the same Authentication Services API is supported. In future releases, the fan-out driver will provide tighter integration with Identity Manager, while continuing to provide the flexibility to manage all aspects of the user experience using extensible scripts.

The fan-out driver gives the logic control of what happens on the MVS ACF2 system to the MVS System Programmer. This is done by providing fully functioning REXX scripts that are executed on the MVS z/OS system based on eDirectory events; any attribute in eDirectory can be presented to the scripts for use in updating ACF2 or used by logic in the scripts. In fact, any TSO command can be issued from within the scripts. There is also a script writers' guide to help easily modify the existing scripts.

The fan-out driver has two components:

  • The core driver
  • Platform Services

The core driver provides event fan-out to target platforms running Platform Services. A single core driver can support many platforms running Platform Services, regardless of platform operating system.

System RSequirements

  • Identity Manager 3.0 and higher
  • Software required by Identity Manager 3.0
  • IBM MVS (any OS/390* or z/OS* release supported by IBM)
  • CA-ACF2 version 6.2 and later

  • Note on Fan-out: We are currently working on an update to the fan-out driver which will ship with the Integration Module for Mainframe in the very near future. Until that time, please visit http://support.novell.com for installations.

Novell® Making IT Work As One

© 2008 Novell, Inc. All Rights Reserved.