What is the impact of a domain migration in RSA Identity Governance and Lifecycle
Originally Published: 2016-10-17
Article Number
Applies To
RSA Version/Condition: 6.9 +
Issue
Customer Scenario
- To prepare for a domain consolidation project, users have been imported from production domain into a sub-level OU in a test domain.
- Now that migration has actually started, the users need to be imported into a different OU at the primary level to match the production OU.
- Do the rules and roles need to be updated to change from one OU to another?
Tasks
- For RSA Identity Management and Governance 6.8 and 6.9, review the RSA Identity Management & Governance 6.8.1 Collectors Guide, Appendix A: Data Collection Parameters.
- For RSA Identity Management and Governance 6.9 Access Fulfillment Express, review the RSA Identity Management & Governance 6.9.1 AFX Connector Configuration Guide.
- For Via Lifecycle and Governance 7.0.0 and Identity Governance and Lifecycle 7.0.1, review the RSA Connector & Collector Application Guides.
Resolution
Entitlement Name = Account : Edit All
Further to the Customer Scenario above, an organizational unit (OU) is different from a Domain Name. An OU provides a way of classifying objects located in directories, or names in a digital certificate hierarchy. OUs are typically used either to differentiate between objects with the same name, or to organize object creation and management. However, an example where a change in the OU may be an issue is with an Account Entitlement.
Entitlement Name = CN=ACME_Users,OU=OU_Applications,OU=OU_AccessGroups,DC=acme,DC=comIn this case, if the users need to be imported into a different OU, then RSA Identity Governance and Lifecycle can only treat them as different to the OU data it already has stored. Therefore, the different OU data would need to be Collected as part of an Account Data Collection, rather than being modified within the RSA Identity Governance and Lifecycle product.
Related Articles
Publishing certificates with multiple OU values 14Number of Views How to publish CA certificate and user certificate under the same OU ? 8Number of Views BASE libraries can't be used on platforms that haven?t been upgraded with the latest MSVCRT libraries. 11Number of Views Creating a RADIUS monitoring account for Citrix NetScaler in RSA Authentication Manager 8.x 95Number of Views Configuration unsuccessful and invalid management network settings reported by RSA SecurID Access Identity Router's VM con… 164Number of Views
Trending Articles
RSA Authentication Manager Upgrade Process RSA Authentication Manager Patch Updates Download RSA SecurID Access Cloud User Event audit logs using Cloud Administration REST API CLU RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide How to Download OTP Token Seed Files from myRSA
Don't see what you're looking for?