11.1 About security configuration

You can use the Security page to specify who is a User Application Administrator for the Identity Manager user application.

A User Application Administrator is authorized to perform all management functions related to the Identity Manager user application. This includes accessing the Administration tab of the Identity Manager user interface to perform any administration actions that it supports.

During installation, a user is specified as User Application Administrator. After installation, that user can use the Security page to specify other User Application Administrators, as needed.

A user who is to be User Application Administrator should typically be located under the user root container specified in the user application’s LDAP configuration; that enables the user to log in simply by user name (instead of requiring the fully-distinguished name each time). It is also common that this user has rights to maintain and create objects in the tree; however, this is not required.

NOTE:If necessary, a User Application Administrator can assign permission for one or more end users to see and access specific pages on the Administration tab. These permissions are assigned by using the Page Admin page on the Administration tab. (For details, see Section 7.0, Page Administration.)