ibm-information-center/dist/eclipse/plugins/i5OS.ic.rzau4_5.4.0.1/wpovereim.htm

77 lines
5.3 KiB
HTML
Raw Normal View History

2024-04-02 14:02:31 +00:00
<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE html
PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xml:lang="en-us">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
<meta name="security" content="public" />
<meta name="Robots" content="index,follow" />
<meta http-equiv="PICS-Label" content='(PICS-1.1 "http://www.icra.org/ratingsv02.html" l gen true r (cz 1 lz 1 nz 1 oz 1 vz 1) "http://www.rsac.org/ratingsv01.html" l gen true r (n 0 s 0 v 0 l 0) "http://www.classify.org/safesurf/" l gen true r (SS~~000 1))' />
<meta name="DC.Type" content="concept" />
<meta name="DC.Title" content="Interaction with an Enterprise Identity Mapping server" />
<meta name="abstract" content="Enterprise Identity Mapping (EIM) for iSeries allows administrators and application developers to solve the problem of managing multiple user registries across their enterprise." />
<meta name="description" content="Enterprise Identity Mapping (EIM) for iSeries allows administrators and application developers to solve the problem of managing multiple user registries across their enterprise." />
<meta name="DC.Relation" scheme="URI" content="wpover.htm" />
<meta name="copyright" content="(C) Copyright IBM Corporation 2004, 2006" />
<meta name="DC.Rights.Owner" content="(C) Copyright IBM Corporation 2004, 2006" />
<meta name="DC.Format" content="XHTML" />
<meta name="DC.Identifier" content="wpovereim" />
<meta name="DC.Language" content="en-us" />
<!-- All rights reserved. Licensed Materials Property of IBM -->
<!-- US Government Users Restricted Rights -->
<!-- Use, duplication or disclosure restricted by -->
<!-- GSA ADP Schedule Contract with IBM Corp. -->
<link rel="stylesheet" type="text/css" href="./ibmdita.css" />
<link rel="stylesheet" type="text/css" href="./ic.css" />
<title>Interaction with an Enterprise Identity Mapping server</title>
</head>
<body id="wpovereim"><a name="wpovereim"><!-- --></a>
<!-- Java sync-link --><script language="Javascript" src="../rzahg/synch.js" type="text/javascript"></script>
<h1 class="topictitle1">Interaction with an Enterprise Identity Mapping server</h1>
<div><p>Enterprise Identity Mapping (EIM) for <span class="keyword">iSeries™</span> allows
administrators and application developers to solve the problem of managing
multiple user registries across their enterprise.</p>
<p>Most network enterprises face the problem of multiple user registries,
which require each person or entity within the enterprise to have a user identity
in each registry. The need for multiple user registries quickly grows into
a large administrative problem that affects users, administrators, and application
developers. Enterprise Identity Mapping (EIM) enables inexpensive solutions
for easier management of multiple user registries and user identities in your
enterprise.</p>
<p>EIM allows you to create a system of identity mappings, called associations,
between the various user identities in various user registries for a person
in your enterprise. EIM also provides a common set of APIs that can be used
across platforms to develop applications that can use the identity mappings
that you create to look up the relationships between user identities.</p>
<p>If you are a system administrator, you can configure and manage EIM through <span class="keyword">iSeries Navigator</span>, the <span class="keyword">iSeries</span> graphical
user interface. The <span class="keyword">iSeries server</span> uses
EIM to enable <span class="keyword">i5/OS™</span> interfaces
to authenticate users by means of network authentication service.</p>
<p>While <span class="keyword">iSeries Navigator</span> provides
an interface for administrators to manage all user EIM identity mappings,
it does not provide a secure interface for non-administrative users to manage
their own identities. However, non-administrators (users) can manage their
own identities in an EIM domain when EIM is configured by the IBM<sup>®</sup> Welcome Page
V1.1 application. Once configured, users can sign into the IBM Telephone
Directory V5.2 application to update their directory entry and EIM identity
mappings. The application only displays EIM identity mappings if a user logs
in to update his or her own directory entry. By allowing users to manage their
own EIM identity mappings, it helps ease the workload of the EIM domain administrator.</p>
<p>Not all associations can be set up by IBM Welcome Page V1.1 and managed by IBM Telephone
Directory V5.2. The applications are only capable of authenticating identities
that use LDAP or FTP protocols. If user registries are found that do not accept
LDAP or FTP authentication, associations with that user registry cannot be
added. The applications must be able to authenticate a user's identity using
LDAP or FTP before an association for that identity can be added to the user's
EIM identifier.</p>
<p>See <a href="../rzalv/rzalvmst.htm">Enterprise
Identity Mapping (EIM)</a> in the <em>Security and Directory server</em> topic
for more information.</p>
</div>
<div>
<div class="familylinks">
<div class="parentlink"><strong>Parent topic:</strong> <a href="wpover.htm" title="Provides an overview of the IBM Welcome Page V1.1 application and how it interacts with different iSeries server components and various software components.">Overview of IBM Welcome Page V1.1</a></div>
</div>
</div>
</body>
</html>