Novell XDASV2 - ADMINISTRATION GUIDE V1 Administration Manual page 31

For edirectory, idm, and nmas
Table of Contents

Advertisement

Event
Event Names
Identifier
Unfederate Identity 0.0.11.3
Create Access
0.0.11.4
Token
Destroy Access
0.0.11.5
Token
eDirectory
Description
Events
A remote identity is
disassociated from
a local identity.
A SAMLv2, WS-*,
OAuth, or other
access token was
provided upon
request.
An existing
SAMLv2, WS-*,
OAuth, or other
access token was
destroyed or
decommissioned.
Use
An existing identity relationship
between a user at an external
identity provider and the local
identity provier is removed.
A resource access token was
created by a service (or identity)
provider to send to a service
consumer. Access is limited by time
frame, specifically requested
resources, or other limiting criteria,
in terms of a contract specified by
previously agreed upon name/value
pairs in the token. The act of
creating and sending an access
token is the start of a new pseudo-
identity with limited and specific
rights to protected resources. This
pseudo-identity can be used as a
correlation identifier between this
and future authorization events. The
actually identity of the system user
behind the access token may or
may not be hidden from the
consumer.
A previously created access token
was decommissioned such that it is
no longer allowed to be used for
access to protected resources.
Future requests for access to
protected resources, based on this
access token should be denied.
XDASv2 Events
31

Advertisement

Table of Contents
loading

Table of Contents