Integrate CA Single Sign-on with CA Identity Manager
When the policy administrator and the identity administrator work together to integrate CA SSO with an existing installation, the architecture expands to include the following components:
When the policy administrator and the identity administrator work together to integrate CA SSO with an existing
Identity Managerinstallation, the
Identity Managerarchitecture expands to include the following components:
- CA SSO Web AgentProtects theIdentity ManagerServer. The Web Agent is installed on the system where theIdentity Managerserver is installed.
- CA SSO Policy ServerProvides advanced authentication and authorization forIdentity Manager.
How you integrate depends on what your system state: with a new or existing version of
Identity Manager, while upgrading
Identity Manager, or if you want to use a completely manual process. See Use Cases for Integrating CA Identity Manager and CA SSO for more information.
We recommend that you install
Identity Managerand CA SSO on different computers. The components can be installed on different platforms.
Identity Managerrequires Java Cryptography Extension Unlimited Strength Jurisdiction Policy Files (JCE libraries). Download these libraries from the Oracle website, and load them at <Java_path>\<jdk_version>\jre\lib\security\.
The following diagram is an example of a
Identity Managerinstallation with a CA SSO Policy Server and Web Agent: