How to Configure ADAM as a Policy Store for SiteMinder?
book
Article ID: 51230
calendar_today
Updated On:
Products
CA Single Sign On Secure Proxy Server (SiteMinder)CA Single Sign On SOA Security Manager (SiteMinder)CA Single Sign-On
Issue/Introduction
Description:
This document explains step-by-step how to configure ADAM as a policy store for SiteMinder
Solution:
Install ADAMSP1_x86_English.exe
Install ADAMSP1MUI_x86.exe
Create an instance named training
Create an application partition named dc=training,dc=com
Import all LDF ldif file
Edit msDS-Other-Settings attribute of cn=directory service,cn=windows nt,cn=services,cn=configuration,cn={guid}
Change ADAMAllowADAMSecurityPrincipalsInConfigPartition=0 to ADAMAllowADAMSecurityPrincipalsInConfigPartition=1
Edit the Configuration partition under cn=Roles create a user named admin : password set user admin attribute msDS-UserAccountDisabled to false under that user copy its entire DN
Edit member of cn=Administrator and add ADAM Account, and paste the above copied DN in a text file for further use.
Open the dc=training,dc=com partition and under roles, edit member of cn=Administrator and add ADAM Account, and paste the above copied DN in the configuration partition, edit the user admin object and modify attribute.
the administrative DN is for example: CN=admin,CN=Roles,CN=Configuration,CN={3B1FF893-289D-452F-9C26-C9F05B7FE5F2} the root dn is : dc=training,dc=com
Manually modify the /opt/CA/siteminder/xps/db/ADAM.ldif file and change {guid} with the GUID defined in ADAM configuration partition as above, for example: