1.2 Understanding the Integrated Installation Process

The integrated installation process internally runs the installation programs for the various Identity Manager components. The installer provides default values for the most common settings in a single server environment. These settings are used in typical installations. NetIQ recommends to retain these settings for your installation. If you are installing the Identity Manager components in a distributed environment, run the integrated installation program on each computer and specify which you want to install.

When you begin the installation process, you can specify a password that the process will apply to all password parameters for the installed components. The installation applies default settings to configure the installed components. You can modify the default settings as part of the installation process or make the changes later. For example, when you initiate the process, you can specify the password that you want to apply to all password values.

NOTE:You cannot use the integrated installation process to upgrade an existing installation.

The following sections explain the components that you can install with this process and their default settings.

1.2.1 Identity Manager Server

This option installs the following Identity Manager components:

  • Identity Vault

  • Identity Manager engine

  • iManager plug-ins

  • Identity Manager drivers

  • Remote Loader

  • Fan-Out Agent

    NOTE:Applies only to the JDBC Fan-Out driver. When this option is selected, the installation program installs the Fan-Out agent for the JDBC Fan-Out driver. The JDBC Fan-Out driver uses the Fan-Out agent to create multiple JDBC Fan-Out driver instances. The Fan-Out agent loads the JDBC driver instances based on the configuration of the connection objects in the Fan-Out driver. For more information, see NetIQ Identity Manager Driver for JDBC Fan-Out Implementation Guide.

By default, the administrative account for the Identity Vault is admin. You can change that value when you configure the components. The installation process automatically creates the tree structure for the Identity Vault. For more information, see Section 1.3, Understanding the Default Identity Vault Structure.

1.2.2 Identity Applications

This option installs the following Identity Manager components and the supporting software:

  • Catalog Administrator

  • Home and Provisioning Dashboard

  • Roles Based Provisioning Module (RBPM)

  • Role and Resource Service driver

  • User Application

  • User Application driver

  • One SSO Provider

  • PostgreSQL

  • Self Service Password Reset

  • Tomcat

NOTE:If you choose to install RBPM in GUI or silent mode, ensure that Identity Reporting and Sentinel Log Management for IGA options are also selected.

The installation process provides an Oracle JRE, open source versions of Apache Tomcat Web Server, Apache ActiveMQ, and PostgreSQL database server as a basis for Identity Manager. This installer lets you install these components without downloading them separately. However, NetIQ does not provide enterprise support for these components.

NetIQ recommends using an enterprise application server for staging and production environments, and creating development environments by using this convenient installer. NetIQ does not provide support and updates for these components, or administration, configuration, or tuning. If you need support, go to the third-party provider of the component.

The installation process creates the following accounts and database:

Default item

Description

idmuserappdb

Database for the identity applications

idmadmin

Administrative user account for the idmuserappdb database

uaadmin

Administrative user account for the User Application

The installation process also creates and configures the User Application driver and the Role and Resource Service driver. To configure additional drivers, see the Identity Manager Drivers documentation website.

For more information about the identity applications, see Understanding the Components for Managing User Provisioning and Installing the Identity Applications in the NetIQ Identity Manager Setup Guide.

1.2.3 Identity Reporting

This option installs the following Identity Manager components:

  • Identity Reporting Module

  • Managed System Gateway driver (MSGW)

  • Driver for Data Collection Service (DCS)

Although you might have multiple types of event auditing systems, Identity Reporting can communicate with only one event audit service. To log events, Identity Reporting needs the SIEM database that gets installed with Sentinel.

For more information about Identity Reporting, see Identity Reporting and Installing Identity Reporting in the NetIQ Identity Manager Setup Guide.

1.2.4 Sentinel Log Management for Identity Governance and Administration

This option installs the Sentinel Log Management for IGA on the new PostgreSQL database.

IMPORTANT:On Linux, NetIQ restricts you to install Sentinel Log Management for IGA and Identity Reporting on the same computer when installing with the integrated installation program. If you install these components using the individual component installers, you can install them on the same computer or in a distributed environment.

Sentinel Log Management for IGA allows you to view events and interact with those events. Some of the actions that you can perform include the following:

  • Configure data collection for event sources such as syslog, audit, and so on

  • View events in real-time

  • Correlate event data

  • Event Forwarding

For more information about Sentinel Log Management for IGA, see Installing and Managing Sentinel Log Management for Identity Governance and Administration in the NetIQ Identity Manager Setup Guide.

1.2.5 iManager

This option installs iManager and its workstation client. During the configuration process, you can modify the default ports that iManager uses for communication. For more information about iManager, see iManager and Installing iManager in the NetIQ Identity Manager Setup Guide.

1.2.6 Designer

This option installs Designer on the local computer. Designer does not have any user-programmable parameters. For more information about Designer, see Designer for Identity Manager and Planning to Install Designer in the NetIQ Identity Manager Setup Guide.

1.2.7 Analyzer

This option installs Analyzer on the local computer. Analyzer does not have any user-programmable parameters. For more information about Analyzer, see Analyzer for Identity Manager and Installing Analyzer in the NetIQ Identity Manager Setup Guide.