|
We have moved to http://onlineAppsDBA.com kindly check http://onlineAppsDBA.comin future
Multi Master OID Replication |
Saturday, March 24, 2007 |
|


1. Multi Master OID replication uses database advanced replication feature 2. It uses asynchronous data propagation between supplier and consumer. ** Supplier writes changes to its change log and then send batched jobs to consumers, consumers receive change logs and applies the changes locally and then purges local changes data.
Figure on left hand side shows activity at supplier end and on right is consumer end.
All replica member in multimaster replication act as supplier and consumer at same time.
Replication process at Supplier end (Left Fig.) 1. User modify an entry in OID (Oracle LDAP Server) 2. The Oracle directory server generates a change log object in the change log object store. 3. At a scheduled time, the Oracle directory replication server launches an outbound change log processing thread. This thread translates the change log object into a row—for example, Change entry—in the change log table. 4. When a change entry is committed to the change log table, Advanced Replication immediately copies the change into the deferred transaction queue. 5. After a scheduled interval, Advanced Replication pushes pending transactions from the deferred transaction queue across the network to the consumer change log table.
Replication process at Consumer end (Right Fig.)
1. Change arrives in consumer change log table from supplier 2. The Oracle directory replication server launches a change log processing thread for each supplier, based on a scheduled replication cycle. This thread first consults the change status table for the last change applied from the supplier to the consumer. 3. The Oracle directory replication server then fetches and applies all the new changes from the change log table to the Oracle directory server. 4. The Oracle directory replication server then updates the change status table to record the last change applied from the supplier before exiting. 5. Advanced Replication copies the change status update into the deferred transaction queue. 6. After the scheduled Advanced Replication interval, Oracle Database Advanced Replication pushes pending change status updates from the deferred transaction queue to the supplier change status table.Labels: idm, oid |
We have moved to kindly check onLineAppsDBA.com in future
|
|
del.icio.us
¦
Digg This
¦
My Yahoo
¦
Reddit
¦
BlinkList
¦
Furl It
¦
Email This
¦
Leave Your Comments
|
posted by Atul Kumar @ 2:39 PM
  |
|
|
We have moved to http://onlineAppsDBA.com kindly check http://onlineAppsDBA.comin future
Installing Oracle Access Manager (Oblix COREid / Netpoint) |
Thursday, March 22, 2007 |
|
I was working on Identity Management for quite some time & have seen lot of changes, From Netpoint to Oblix-COREid to Oracle-Oblix and now Oracle Identity Management , who knows what next. These changes in Identity Management are quite important and at same time required in rapidly changing Information era where management of Identity both from security and SoX compilance point of view is critical.
In today's post I am going to cover installation order of Oracle Access Manager (Formerly Oblix COREid)
The order of installation is important .
Installation of Access Manager Access Manager consist of Identity System and Access System. Phase I - Installing Identity System (Identity Server, Web Pass)
1. First component to be installed is Identity Server --1.1 Start the installation from /software_location/ Oracle_Access_Manager10_1_4_0_1_XXXX_Identity_Server --1.2Specify transport security Mode (open, simple, secure) --1.3 Identify Identity Server --1.4 Define communication detail (between Identity Server & Directory Server) --1.5 define directory server details Webpass can't be installed on same directory as of Identity Server 2. Then Install Web Pass (Each webpass should have its own webserver) --2.1 choose install method GUI or command line and start installation from Oracle_Access_Manager_10_1_4_0_1_XXXXX_WebPass --2.2 Specify transport security mode for webpass --2.3 Identify web pass configuration details --2.4 Perform automatic Web Server configuration updates 3. Next Setup Identity system --3.1 Start setup process from browser, http://server:port/identity/oblix --3.2 From Idm System console, Specify directory server and data location ----3.3 Specify Object Class details --3.4 Confirm Object class changes --3.5 Configure Master administrator --3.6 Complete identity system setup
4. Add additional identity server instance (Optional Step, This can be done later as well) Phase II Installing Access System (Policy Manager, Access System, Web Gate)
5. Install Policy Manager Note: Policy manager should be installed on same webserver and same directory level as WebPass --5.1 Choose install method from GUI or command line /Oracle_Access_Manager_10_1_4_0_1XXXXX_Policy_Manager --5.2 Identify directory server and Policy data location --5.3 Specify transport security mode --5.4 Update web server configuration --5.5 Finish your Policy manager configuration
6. Next Step is Set up Policy Manager --6.1 Start policy manager setup using http://servername:port/access/oblix --6.2 Specify directory server details to store policy data --6.3 Configuring Authentication Schemes --6.4 Completing policy manager setup
7. Install Access Server (Access server receives request from webgate or access gate(custom) and queries LDAP server for authentication, authorization and auditing. Before installing access server you need to create instance for it from access console) -- 7.1 Adding an instance in access console (http://servername:port/access/oblix ) --7.2 Install access server ----7.2.1 Start Installation in GUI or command line mode ----7.2.2 Specify transport security mode ----7.2.3 Define Directory server communication details ----7.2.4 Finish Access Server Installation ----7.2.5 Add additional access server (optional)
8. Install WebGate Webgate is web server plug-in that communicates with Access Server for Authentication & Authorisation. --8.1 Create WebGate Instance from Access Console --8.2 Associate WebGate Instance with Access Server --8.3 Install WebGate --8.4 Update Webgate Web Server Configuration --8.5 complete finishing task (Updating IIS Server Config, httpd.conf updates)
You can install additional optional components like
- Setting Up Access Manager with Virtual Directory - Installing SNMP Agent- Installing Additional language - Installing Audit-to-Database component Oblix-COREid or Oracle Access Manager Architecture and key component's (Installed above) inter communication coming soon...Labels: idm |
We have moved to kindly check onLineAppsDBA.com in future
|
|
del.icio.us
¦
Digg This
¦
My Yahoo
¦
Reddit
¦
BlinkList
¦
Furl It
¦
Email This
¦
Leave Your Comments
|
posted by Atul Kumar @ 6:56 PM
  |
|
|
We have moved to http://onlineAppsDBA.com kindly check http://onlineAppsDBA.comin future
Oracle Identity & Access Management II |
Wednesday, March 21, 2007 |
|
Oracle Identity and Access Management can logically be divided into three main categories
- Directory Service (OID, Virtual Directory, DIP) - Access Management (Access Manager, Identity Federation, AS SSO, OeSSO) - Identity Management (Identity Manager & DAS)
1) Directory Services - overview including OID, I have already covered in past at OID overview.
2) Access Management: A) Access Manager - Controlling User Access to Enterprise resources. It also provides web based Identity Administration & access control to applications & resources. Provides User, password and group management. User access policies can be defined and enforced with high granularity.
B) Identity Federation - Allows companies to operate independently and enable cross domain user provisioning.
C) Single Sign-on - It provides built in integration with customer's IM and addressing key challenges (for cross domain access) like automatic mapping, identity mapping access control navigation.
D) eSSO - Enterprise SSO is upcoming product which provide true SSO for all application and resource in an enterprise, without modifying existing applications.
3) Identity Management:
A) Identity Manager - Allows automated user identity provisioning and deprovisioning. Key features of Identity Manager are password management, workflow & policy management, Identity reconciliation, reporting and Auditing. Identity manager also supports attestation (confirming access rights by user or system manager periodically). This is requirement from SoX compliance.
B) DAS - Delegating Administrative Services provides trusted proxy based administration at User or Administrator level.
What is available to download & Install ? There are two packages available which you can download & install based on requirement - Oracle Identity Management and Access Management Suite (OID, Virtual Directory, Access Manager, Federation and Identity Manager) - Oracle Application Server Infrastructure Component (OID, DIP, SSO, DAS)
More on Oracle Access Manager (Formerly Oblix) including Webgate, Webpass, Access & Identity System and Policy Manager coming soon ..Labels: idm |
We have moved to kindly check onLineAppsDBA.com in future
|
|
del.icio.us
¦
Digg This
¦
My Yahoo
¦
Reddit
¦
BlinkList
¦
Furl It
¦
Email This
¦
Leave Your Comments
|
posted by Atul Kumar @ 9:24 PM
  |
|
|
|
|