Novell IDENTITY ASSURANCE SOLUTION 3.0.2 - ADMINISTRATION Manual

Hide thumbs Also See for IDENTITY ASSURANCE SOLUTION 3.0.2 - ADMINISTRATION:

Advertisement

Novell
Identity Assurance Solution
w w w . n o v e l l . c o m
3 . 0 . 2
A D M I N I S T R A T I O N G U I D E
F e b r u a r y 1 5 , 2 0 0 8

Advertisement

Table of Contents
loading

Summary of Contents for Novell IDENTITY ASSURANCE SOLUTION 3.0.2 - ADMINISTRATION

  • Page 1 Identity Assurance Solution 3.0.2 Administration Guide Novell Identity Assurance Solution w w w . n o v e l l . c o m 3 . 0 . 2 A D M I N I S T R A T I O N G U I D E...
  • Page 2: Legal Notices

    Further, Novell, Inc. reserves the right to make changes to any and all parts of Novell software, at any time, without any obligation to notify any person or entity of such changes.
  • Page 3 Novell Trademarks For Novell trademarks, see the Novell Trademark and Service Mark list (http://www.novell.com/company/legal/ trademarks/tmlist.html). Third-Party Materials All third-party trademarks are the property of their respective owners.
  • Page 5: Table Of Contents

    Contents About This Guide 1 Overview System-Wide Roles ............9 Agency-Specific Roles .
  • Page 6 Novell Products ........
  • Page 7: About This Guide

    ® A trademark symbol ( , etc.) denotes a Novell trademark. An asterisk (*) denotes a third-party trademark. When a single pathname can be written with a backslash for some platforms or a forward slash for other platforms, the pathname is presented with a backslash.
  • Page 8 Identity Assurance Solution 3.0.2 Administration Guide...
  • Page 9: Overview

    Overview ® Novell has partnered with third-party companies to build a solution that offers an integrated logical and physical control system that complies with Homeland Security Presidential Directive 12 (HSPD-12). HSPD-12 directs the implementation of a new standardized badging process, which is designed to enhance security, reduce identity fraud, and protect the personal privacy of users who are issued government identification.
  • Page 10: Agency-Specific Roles

    System-Wide Role Description Tasks Activator Runs the CMS system. Responsible No Applicant Match for for activating an applicant's PIV card Shipped Cards For more information, see after it comes back from the card Section 2.3.2, “Wrong Cards Section 2.3, “Activator,” on production facility.
  • Page 11: What's Next

    Agency-Specific Role Description Tasks Agency Security Officer Responsible to ensure that the Card Destruction agency is following all policies Change PIV Card Status For more information, see regarding the use of PIV cards. If a Section 3.3, “Agency Security Invalid Address PIV card is terminated, the agency Officer,”...
  • Page 12 Identity Assurance Solution 3.0.2 Administration Guide...
  • Page 13: Managing System-Wide Roles

    Managing System-Wide Roles This section outlines the system-wide roles and tasks performed by each role for the Identity Assurance Solution. When you are working with the workflow forms, all fields with an asterisk (*) are required fields. Section 2.1, “System Role Administrator,” on page 13 Section 2.2, “System Security Officer,”...
  • Page 14: System Security Officer

    You can search for the user by either typing the user’s last name and date of birth or by typing the user’s Social Security number and date of birth. 6 Select the user. 7 Click Remove. 2.2 System Security Officer The system security officer is responsible for administering the audit system and does not have any specific workflow tasks.
  • Page 15: Managing Agency-Specific Roles

    Managing Agency-Specific Roles This section outlines the agency roles and tasks performed by each role for the Identity Assurance Solution. When you are working with the workflow forms, all fields with an asterisk (*) are required fields. Section 3.1, “Agency Sponsor,” on page 15 Section 3.2, “Agency Adjudicator,”...
  • Page 16: Create A New User

    3.1.2 Create a New User The Identity Assurance Solution has two ways to create users: “Human Resources Adds the User to the Identity Vault at the Time the User Is Hired” on page 16 “The Sponsor Uses IAS Workflow to Add a User to the Identity Vault” on page 16 Human Resources Adds the User to the Identity Vault at the Time the User Is Hired In the first instance, Human Resources creates the User object in the Users container with the following attributes populated:...
  • Page 17: Display Applicant Information

    2 Click Requests & Approvals > Request Resources. 3 Click Continue. 4 Click Delete a User. 5 In the Search type field, select a value from the drop-down menu. You can search for the user by either typing the user’s last name and date of birth or by typing the user’s Social Security number and date of birth.
  • Page 18: Request Card Reprint

    8 Select a reason why the card is being reissued. The options are: Biometrics no longer valid Damaged Lost Stolen 9 Select the Warning and Usage Statement, then click Sign Approval. 10 Ensure that all required fields are filled in, then click Submit. 3.1.6 Request Card Reprint This task allows the agency sponsor to request a reprint of a PIV card without requiring a re- enrollment.
  • Page 19: Update Applicant Employment Status

    4 Click Sponsor New Applicant. 5 For an existing applicant, select a value from the Search by drop-down menu, then click Search. You can search for the user by either typing the user’s last name and date of birth or by typing the user’s Social Security number and date of birth.
  • Page 20: Agency Adjudicator

    3.2 Agency Adjudicator The agency adjudicator performs background checks on the applicants and makes changes to the adjudication record. 3.2.1 Change To Adjudication Record (Manual) This task allows the agency adjudicator to enter the results of background checks by the FBI and NACI.
  • Page 21: Change Piv Card Status

    3 Click Continue. 4 Click Card Destruction. 5 In the Search type field, select a value from the drop-down menu. You can search for the user by either typing the user’s last name and date of birth or by typing the user’s Social Security number and date of birth.
  • Page 22: Invalid Source Documents

    You can search for the user by either typing the user’s last name and date of birth or by typing the user’s Social Security number and date of birth. 6 Click Search. 7 Select the user. The user and card information is automatically filled in. 8 Type in information about why the address is invalid.
  • Page 23: Request Card Reprint

    3.3.6 Request Card Reprint This task allows the agency security officer to request a reprint of a PIV card without requiring a re- enrollment. An agency security officer might use this task if an applicant’s name has changed or if a bad card was identified during the application process.
  • Page 24: Remove A User From An Agency-Specific Role

    3.4.2 Remove a User from an Agency-Specific Role This task allows the agency role administrator to remove a user from an agency-specific role. 1 Log in to IAS Workflow as an agency role administrator. 2 Click Requests & Approvals > Request Resources. 3 Click Continue.
  • Page 25: Troubleshooting

    When requesting a card for an applicant, you can type information in the Delivery Place Info and Physical Characteristics fields, but do not use the Enter key. A hotfix is available for this problem. Contact Novell Technical Support (http://support.novell.com). 4.1.2 Required Browser for IAS Workflow Use Firefox* 1.5.x or Internet Explorer* 6x or later when running IAS Workflow.
  • Page 26 Identity Assurance Solution 3.0.2 Administration Guide...
  • Page 27: A.1 Signed Workflows

    Novell eDirectory 8.8.1 Administration Guide (http://www.novell.com/documentation/edir88/ edir88/data/a2iii88.html) Novell iManager 2.6 Administration Guide (http://www.novell.com/documentation/ imanager26/imanager_admin_26/data/hk42s9ot.html) Security: Best Practices in the Novell Identity Manager 3.5.1 Administration Guide (http:// www.novell.com/documentation/idm35/admin/data/b1bsw73.html). Novell Enhanced Smart Card Method Installation Guide (http://www.novell.com/ documentation/ias/index.html?page=/documentation/ias/nescm_install/data/bookinfo.html) Novell Client for Windows Installation and Administration Guide (http://www.novell.com/ documentation/noclienu/index.html).
  • Page 28 Identity Assurance Solution 3.0.2 Administration Guide...
  • Page 29: B Documentation Updates

    Documentation Updates This section contains information on documentation content changes that have been made in the Novell Identity Assurance Solution Installation Guide. The information will help you to keep current on updates to the documentation. All changes that are noted in this section were also made in the documentation. The documentation is provided on the Web in two formats: HTML and PDF.
  • Page 30 Identity Assurance Solution 3.0.2 Administration Guide...
  • Page 31: C Documentation Updates

    Documentation Updates The documentation was updated on the following dates: Section C.1, “February 15, 2008,” on page 31 C.1 February 15, 2008 Updates were made to the following sections. The changes are explained below. C.1.1 Overview Location Change Table 1-1 on page 9 Added links to information.

Table of Contents