Skip to Content

SAP IDM 7.2 - non sap Java portal - update job?

Hello,

One of our client have one Non SAP Java repository connected to IDM7.2.

The repository type is Database & connection details are as per attached screenshot.

idm-iv-error.jpg

In IDM UI, I can see privileges related to this JAVA portal which were created before. But newly created privileges are not showing in IDM UI. There are no jobs defined for this repository. I am curious to know, how privileges are getting read in IDM UI from this Java portal ?

How to run update job of Java portal ?

http://<host>:<port>/idm/admin link is not working. Anything to do in IDM IC ?

idm-iv-error.jpg (46.3 kB)
Add comment
10|10000 characters needed characters exceeded

  • Get RSS Feed

3 Answers

  • Best Answer
    May 01, 2017 at 12:17 PM

    Hi Imran,

    Check the visibility on the privileges in the MMC Make sure they are visible to ALL.

    What SP of 7.2 are you using? I'm pretty sure that all SP's allow for the admin UI. If the SP level of IDM and the SP level of the UI are different, then you could have many issues throughout IDM.

    I don't see any issues with your repository, but if it was working before and hasn't changed, I doubt it's a big part of the problem.

    Matt

    Add comment
    10|10000 characters needed characters exceeded

  • May 01, 2017 at 07:07 PM

    Hello Matt,

    The privileges visibility is set to ALL. We are using SP9. Let me rephrase my question

    1. In NonSAP Application, Java developer has created role (or you can call it as Java action) which restrict view of Portal.

    2. now in IDM UI, this Java role- should be read as "Privilege". My question, how IDM will see this as privilege ?

    I see option 1 --> Create Privileges in MMC-->Identity Center > Identity stores>Ent. people>Identity store metadat> Privilgies >New priviliges with name Like

    PRIV:<REP_NAME>:<priv Name>.. (see attached snap)

    idm-java.jpg

    After this step, I can see newly created Privilege in IDM UI but assignment is not provisioning to destination repository. I doubt, there is no link between manually created Privilege in IDM & actual Java role in destination repository.

    Option2: I should create new Job, under Job Folder & first read "Java role" from Java reposiroty..After this job runs, the privilges will be available in IDM UI...I am not sure, how to do this steps? as I am new to SQL queries..

    Please help..

    Add comment
    10|10000 characters needed characters exceeded

  • May 02, 2017 at 05:55 PM

    Dears,

    I am able to resolve this issue using option1 above. After creating privilege, i forgot to map it to "repository". After i map to respective "repository", the privilge assignment to non-sap Java application is successfull.

    Thanks.

    Imran

    Add comment
    10|10000 characters needed characters exceeded