An Introduction to Novell Identity Manager 3.5 in 2 days

Delivered by Steve Rex
Consult609 Ltd

Target Audience

This course is aimed at people that want to get an overview of what Novell Identity Manager 3.5 can do, gain some understanding of how it works and see it in action. The demonstrations focus on issues for a medium sized Academic Institution.

No previous experience of this product is required, although a quick browse of the product web site at http://www.novell.com/idm would be useful.
It covers two of the most popular connectors (eDirectory and Active Directory) that are included in the Bundled Edition that ships with Open Enterprise Server.

The full edition of Identity Manager also contains Role Based Entitlements, User Application and White pages. These are explained and demonstrated.

Issues that are explored include:
  • What is Identity Manager
  • Identity Vaults
  • Installing Identity Manager on NetWare and Linux
  • Installing and configuring eDirectory and Active Directory drivers
  • Using Role Based Entitlements to provide access to resources and systems
  • Using the Designer tool to create, modify, model, import and deploy systems
  • Password synchronization
  • Web based self service (User Application)
  • Organization Charts and directory lookups (White pages)
  • Auditing
  • Deployment and Best Practice

This is a two day training course and all of the presentations and demonstrations can be downloaded for personal study by course delegates.

Background

This introduction is based upon the Novell Identity Manager 3 Fundamentals course 3065, a 5 day interactive course. There is a lot of material in there.

To cover the same breadth of material in two days means that we are not going to go into quite the same depth and the practical work will be done as demonstrations. The demonstrations are also shorter and simplified.

To help you to concentrate on the material, all of the overhead slides have been made available online (you will received the url as part of the joining instructions along with the necessary password). You are encouraged to print these off beforehand and bring them with you (6 to a page works well).

Screen shots of the demonstrations have also been made available online so that you can concentrate on the overall flow rather than the details. There are a few necessary steps that could not be fitted into the available time and the screen shots of these are also available from the website.

The course will cover a very useful tool called Designer which allows you to import your real Identity Manager designs, work on them and then export them back into a production environment. The Designer project file for this course is up on the web site. A brief document that lists the patch levels on the demonstration systems and some hints is also there.

You are encouraged to download the trial version of the software and the Designer tool from http://download.novell.com/ after the course.


Scenario

The following scenario was used to develop this short course and is intended to tie the various demonstrations and theory together.

The “University of South Midlands“ is a medium sized University with 10,000 students offering a wide variety of undergraduate and postgraduate courses. It is spread over several campus sites within the South Midlands. Its students come from all over the world attracted by the high quality teaching and top rated research.

The University has a number of semi-automated systems for mass creation of user accounts on several different systems. Students and staff are issued with standard usernames on the different systems but their passwords are not synchronised. Managing the accounts after creation is both costly and in-efficient. There can be long queues at the service points during certain times of year. Gap year students and staff on sabbatical frequently forget their passwords when they get back.

The University works hard to keep in touch with its graduates and regularly organises events for alumni.

The University has the following servers:

  • IDM-VAULT

A Novell Open Enterprise Linux server running eDirectory 8.7.3.9 to use as a central Identity Vault

  • SM-Prod

A Novell Open Enterprise NetWare 6.5 SP6 server running eDirectory 8.7.3.9 that provides file and print services to all users.

  • SM-AD

A Windows 2003 server running Active Directory that is used by the Business School for their staff and postgraduates.


Outline Draft Agenda

Day 1

am
Course Background
Overview of Identity Manager
Scenario - The University of South Midlands
Install Identity Manager on the Identity Vault
Create an eDirectory driver on Linux
Create the other end of the eDirectory driver on NetWare
pm
Secure the connection
Quick Test
Monitoring IDM activity
Designer
Role Base Entitlements

Day 2

am
Active Directory Driver
Passwords
Create User Application
pm
Using the User Application - White Pages, Organisational Charts and Self Service
Auditing
Deployment and Best Practices