Can we use SPECTRUM "service Users" which are defined outside of LADP/AD, in EEM?

Document ID:  TEC1843245
Last Modified Date:  08/11/2017
{{active ? 'Hide' : 'Show'}} Technical Document Details

Products

  • CA Spectrum

Releases

  • CA Spectrum:Release:10.2
  • CA Spectrum:Release:10.0
  • CA Spectrum:Release:10.1
  • CA Spectrum:Release:10.1.1
  • CA Spectrum:Release:10.1.2
  • CA Spectrum:Release:10.2.1
  • CA Spectrum:Release:9.3
  • CA Spectrum:Release:9.4
  • CA Spectrum:Release:9.4.1
  • CA Spectrum:Release:9.4.2
  • CA Spectrum:Release:9.4.2.1
  • CA Spectrum:Release:9.4.3

Components

  • INTEGRATIONS:SPCINT
  • CORE / SPECTROSERVER:SPCCSS
Introduction:

Our customer has integrated SPECTRUM with EEM for SSO. He wants to run some scripts with "service users" which are defined outside LDAP/Active Directory. 

As per TEC523200, it's possible to add some "local" users in EEM beside those coming from Active Directory :

"There are two options here, either add additional users to EEM for the non-LDAP integration or disable Single Sign-On in Spectrum Web Administration. " 

 

 

Question:

Is this possible somehow to add local "service users" in EEM in addition to the Active Directory integration? 

I had hoped that I first could add some "service users" manually / locally in EEM (or delete the AD integration temporarily) and later configure the AD integration and than would have both types of users available. However I cannot find a way to do this and it seems that at any time only one type of users is "known" in EEM, either local users OR AD users - but never both types? Is this correct?

Environment:
SPECTRUM with EEM for SSO
Answer:

Once the LDAP (Active Directory) connection is made within EEM, you can not add users manually.   

When the EEM -> Active Directory connection is established, EEM reads the information from Active Directory, so whatever is in Active Directory will be displayed in EEM. 

Now if the Service Accounts in question are in Active Directory, and within the same BaseDN (the OU/Container) which was used to establish the EEM -> Active Directory connection, then those Service Accounts will also show up in EEM, within ‘Managed Identities’.

 

Additional Information:

Please help us improve!

Will this information enable you to resolve your issue?

Please tell us what we can do better.

{{feedbackText.length ? feedbackText.length : '0'}}/255

{{status}}

Not what you were looking for?

Search Again >

Product Information

Support by Product >

Communities

Join a Community >