4.3 Identity Manager 3.6.1 with User Application 3.7 to Identity Manager 4.0.1 Advanced Edition

Use the following checklist for a successful upgrade of the Identity Manager system.

Table 4-3 Identity Manager Component Upgrade Checklist

Identity Manager Component

Need Upgrade (Yes/No)

Metadirectory Server

Yes

Remote Loader

Yes

eDirectory

Yes

Designer

Yes

User Application

Yes

Role Mapping Administrator

Not available with the Identity Manager 3.6.1. You must separately install it in order to use it.

Identity Reporting Module

Not available with the Identity Manager 3.6.1. You must separately install it in order to use it.

Analyzer

Not available with the Identity Manager 3.6.1. You must separately install it in order to use it.

iManager

Not available with the Identity Manager 3.6.1. You must separately install it in order to use it.

Follow these steps for each Identity Manager server:

  1. Make sure you have downloaded the Identity Manager ISO files. For more information, see Where to Get Identity Manager in the Identity Manager 4.0.1 Framework Installation Guide.

  2. Upgrade to Designer 4.0.1. For more information, see Section 4.12, Upgrading Designer.

  3. Create a backup of the current configuration of your Identity Manager solution by creating a Designer project of your Identity Manager solution. For more information, see Section 4.8, Creating a Backup of the Current Configuration.

  4. Verify that the operating system on the servers running Identity Manager is a supported version. See System Requirements in the Identity Manager 4.0.1 Framework Installation Guide for a list of supported operating systems. If the operating system requires only a service pack to meet the system requirements, then proceed with the upgrade.

    If your operating system is not listed in the supported platform list for Identity manager 4.0.1, you need to either upgrade it to a supported version before performing an Identity Manager upgrade or perform a migration instead of an upgrade.

  5. Install iManager. For more information, see Installing iManager section in the Novell iManager 2.7 Installation Guide.

  6. Upgrade eDirectory to 8.8.6 or later on the server running Identity Manager. For more information, see the Novell eDirectory 8.8 Installation Guide. Upgrading eDirectory stops ndsd, which in turn stops all drivers.

  7. Start the drivers and verify that the drivers start. This also verifies that the upgrade to eDirectory 8.8.6 was successful. For more information, see Section 4.19, Starting the Drivers.

    NOTE:Perform this step only if you are upgrading from a 32-bit Identity Manager to another 32-bit version. Skip to step 7 if you are upgrading from 32-bit to 64-bit Identity Manager.

    For more information on successfully running Identity Manager and Identity Manager drivers after upgrading to eDirectory 8.8.6, see TID 7007184.

  8. Convert the Designer project. For more information, see Converting Earlier Projects in the Designer 4.0.1 for Identity Manager 4.0.1 Administration Guide.

  9. Stop the drivers that are associated with the server you are upgrading. For more information, see Section 4.10, Stopping the Drivers.

  10. Upgrade the Metadirectory server. For more information, see Section 4.13, Upgrading the Metadirectory Server.

  11. (Optional) If any of the drivers in the driver set for this server are Remote Loader drivers, upgrade the Remote Loader servers for each driver. For more information, see Section 4.14, Upgrading the Remote Loader.

  12. (Optional) If you have a User Application server, perform the following additional steps:

    1. Run the NrfCaseUpdate utility for providing support for mixed-case searching on roles and resources. This procedure updates the schema by modifying the nrfLocalizedDescrs and nrfLocalizedNames attributes, which are used by User Application drivers. For more information, see Running the NrfCaseUpdate Utility in the Identity Manager Roles Based Provisioning Module 4.0.1 User Application: Installation Guide.

    2. The User Application driver must be migrated in Designer 4.0.1. For more information, see the Migrating to the Roles Based Provisioning Module Version 4.0.1 guide.

    3. Create a new Role and Resource Service driver. The Role and Resource Service driver is not migrated. If you have an existing Role and Resource Service driver, delete it and create a new driver for Identity Manager 4.0.1. For more information, see the Migrating to the Roles Based Provisioning Module Version 4.0.1 guide.

    4. Deploy the migrated User Application driver and the Role and Resource Service driver into the Identity Vault. For more information, see the Migrating to the Roles Based Provisioning Module Version 4.0.1 guide.

    5. Upgrade the User Application. For more information, see the Migrating to the Roles Based Provisioning Module Version 4.0.1 guide.

  13. (Optional) Upgrade the drivers.

    1. If you are using packages instead of driver configuation files, upgrade the packages on the existing drivers to get new policies. This is only required if a newer version of a package is available and there is a new functionality included in the policies for a driver that you want to add to your existing driver. For more information, see Upgrading Installed Packages in the Designer 4.0.1 for Identity Manager 4.0.1 Administration Guide.

      Or

    2. If you are using configuration files, overlay the new driver configuration files over the existing drivers to get new policies. This is required only if there is new functionality included in the policies for a driver that you want to add to your existing driver. For more information, see Section 4.17, Overlaying the Existing Driver Configuration File with the New Driver (Deprecated)

  14. (Optional) Restore custom policies and rules to the drivers. When you overlay the new driver configuration files, the policies are overwritten, so restoring policies is required only if you did an overlay of the new driver configuration file. For more information, see Section 4.16, Restoring Custom Policies and Rules to the Driver.

  15. Deploy the changes performed in the above steps into the Identity Vault. For more information, see Deploying and Exporting in Designer 4.0.1 for Identity Manager 4.0.1 Administration Guide.

  16. Start the drivers associated with this server. For more information, see Section 4.19, Starting the Drivers.

  17. (Conditional) Install the Identity Reporting Module. For more information, see Installation and Driver Configuration in the Identity Reporting Module Guide.

  18. (Optional) Install Role Mapping Administrator. For more information, see Installing the Role Mapping Administrator section in the Identity Manager Role Mapping Administrator 4.0.1 Installation and Configuration Guide.

  19. (Optional) If you are using Novell Sentinel, you must update to Novell Sentinel 6.1. For more information about upgrading Sentinel, see the Sentinel Installation Guide.

  20. (Optional) Install Analyzer. For more information, see Installing Analyzer section in the Analyzer 4.0.1 for Identity Manager Administration Guide.

  21. Activate the Metadirectory server and any upgraded driver. For more information, see Activating Novell Identity Manager Products in the Identity Manager 4.0.1 Framework Installation Guide.