{"id":1181,"date":"2012-02-02T21:46:12","date_gmt":"2012-02-02T16:16:12","guid":{"rendered":"http:\/\/www.oratraining.com\/blog\/?p=1181"},"modified":"2013-01-07T07:50:14","modified_gmt":"2013-01-07T07:50:14","slug":"configuring-oracle-identity-and-access-management-components","status":"publish","type":"post","link":"https:\/\/www.oratraining.com\/blog\/2012\/02\/configuring-oracle-identity-and-access-management-components\/","title":{"rendered":"Configuring Oracle Identity and Access Management components"},"content":{"rendered":"<p style=\"background: white;\"><span style=\"color: #404040;\"><span style=\"font-size: 13pt;\"><span style=\"text-decoration: underline;\">Oracle Fusion Applications Installation<\/span><strong>: Configuring Oracle Identity and Access Management components<\/strong><\/span><br \/>\n<\/span><\/p>\n<p>Previous:\u00a0<strong><a title=\"Installing Oracle Identity and Access Management components\" href=\"http:\/\/www.oratraining.com\/blog\/2012\/02\/installing-oracle-identity-and-access-management-components\/\">Installing Oracle Identity and Access Management Components<\/a><\/strong><\/p>\n<h3><span style=\"color: #ff0000;\">Important Note: This is OLD guide for old version 11.1.1.5. Please follow instructions at\u00a0<\/span><a href=\"http:\/\/www.oratraining.com\/blog\/2012\/12\/oracle-fusion-applications-installation-step-by-step-guide-11-1-5\/\">http:\/\/www.oratraining.com\/blog\/2012\/12\/oracle-fusion-applications-installation-step-by-step-guide-11-1-5\/<\/a>\u00a0<span style=\"color: #ff0000;\">for latest guide for current version i.e. 11.1.5<\/span><\/h3>\n<p>&nbsp;<\/p>\n<p style=\"background: white;\">Configuring Oracle Identity Management components&#8221; can be divided into following tasks. Please note that we will not configure Oracle Virtual Directory, Oracle Identity Federation etc.<\/p>\n<ol>\n<li>Configuring the Web Tier<\/li>\n<li>Create Weblogic Domain for Identity Management<\/li>\n<li>Extending the Domain with Oracle Internet Directory<\/li>\n<li>Extending the Domain with Oracle Directory Service Manager (ODSM)<\/li>\n<li>Extending the Domain with Oracle Access Manager<\/li>\n<li>Preparing Identity and Policy Stores<\/li>\n<li>\n<div>Extending the Domain to Configure Oracle Identity Manager and Oracle SOA Suite<\/div>\n<\/li>\n<\/ol>\n<div><span style=\"background-color: white; color: red;\">Please note that this post is going to be long so allow time to load all images.<\/span><\/div>\n<div><\/div>\n<p style=\"background: white;\"><span style=\"font-size: 13pt;\"><span style=\"color: #632423; text-decoration: underline;\"><strong>Configuring the Web Tier<\/strong><\/span><span style=\"color: #333333;\"><br \/>\n<\/span><\/span><\/p>\n<p><span style=\"color: #000000;\">Start the configuration from\u00a0<strong>&lt;Web_Home&gt;\/bin<\/strong><\/span><\/p>\n<blockquote><p>[oracle@fusion web]$ <span style=\"color: #ff0000;\"><strong>cd \/app\/fusion\/fmw\/web\/bin\/<\/strong><\/span><\/p>\n<p>[oracle@fusion bin]$ .<span style=\"color: #ff0000;\"><strong>\/config.sh &amp;<\/strong><\/span><\/p><\/blockquote>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring1.png\" \/><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring2.png\" \/><\/p>\n<p><span style=\"background-color: white;\">Click\u00a0<strong>Next<\/strong><\/span><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring3.png\" \/><\/p>\n<p><span style=\"background-color: white;\">Select &#8220;<strong>Oracle HTTP Server<\/strong>&#8221; and click\u00a0<strong>Next<\/strong><\/span><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring4.png\" \/><\/p>\n<p><span style=\"background-color: white;\">For Instance location enter &#8220;<strong>\/app\/fusion\/admin\/ohs_inst1<\/strong>&#8221; since we will keep all instances in this location. Provide any appropriate Instance name and OHS component name. We will go for the defaults. Click\u00a0<strong>Next<\/strong><\/span><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring5.png\" \/><\/p>\n<p><span style=\"color: #333333;\">Select &#8220;<strong>Specify Ports using Configuration File<\/strong>&#8221; and enter file name as\u00a0<strong>\/home\/oracle\/staticports.ini<\/strong><br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333;\">Now we will copy staticports.ini default file from &lt;repository_location&gt;\/installers\/webtier\/Disk1\/stage\/Response to home directory \/home\/oracle<br \/>\n<\/span><\/p>\n<blockquote><p><strong>cp \/mnt\/fusion\/installers\/webtier\/Disk1\/stage\/Response\/staticports.ini ~\/staticports.ini<\/strong><\/p><\/blockquote>\n<p><span style=\"color: #333333;\">Now click on &#8220;<\/span><strong style=\"color: #333333;\">View\/Edit File<\/strong><span style=\"color: #333333;\">&#8221; to edit this file.<\/span><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring6.png\" \/><\/p>\n<p>Uncomment and set the following values. Click\u00a0<strong>Save<\/strong><\/p>\n<blockquote><p><strong>OPMN Local Port = 6700<\/strong><\/p>\n<p><strong>OHS Port = 7777<\/strong><\/p><\/blockquote>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring7.png\" \/><\/p>\n<p><span style=\"color: #333333;\">Deselect email notification and click\u00a0<strong>Next<\/strong><br \/>\n<\/span><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring8.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p>Save summary if needed and click\u00a0<strong>Configure<\/strong>\u00a0to start configuration.<\/p>\n<blockquote><p><span style=\"color: #ff0000;\"><strong>Important Note: <\/strong><\/span>If SELinux is enabled in your Linux operating System then it will throw an error. Since we already disabled it during installation, we will not see that error here.<\/p><\/blockquote>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring9.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p>Once installation finishes, click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring10.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p>Save installation summary if needed and click\u00a0<strong>Finish<\/strong>\u00a0to complete the installation.<\/p>\n<p>It would have already started HTTP server now. We can verify the same.<\/p>\n<blockquote><p>[oracle@fusion instances]$ <span style=\"color: red;\"><strong>ps -ef | grep http<\/strong><\/span><\/p>\n<p>oracle 3521 3491 0 10:06 ? 00:00:00 \/app\/fusion\/fmw\/web\/ohs\/bin\/httpd.worker -DSSL<\/p>\n<p>oracle 3547 3521 0 10:06 ? 00:00:00 \/app\/fusion\/fmw\/web\/ohs\/bin\/httpd.worker -DSSL<\/p>\n<p>oracle 3548 3521 0 10:06 ? 00:00:00 \/app\/fusion\/fmw\/web\/ohs\/bin\/httpd.worker -DSSL<\/p>\n<p>oracle 3549 3521 0 10:06 ? 00:00:00 \/app\/fusion\/fmw\/web\/ohs\/bin\/httpd.worker \u2013DSSL<\/p><\/blockquote>\n<p>Check <strong>\/app\/fusion\/admin\/ohs_inst1\/config\/OHS\/ohs1\/httpd.conf<\/strong> to make sure it reflects correct user and group name<\/p>\n<p><strong>User oracle<\/strong><\/p>\n<p><strong>Group oinstall<\/strong><\/p>\n<p>We can launch\u00a0<span style=\"color: red;\"><strong>http:\/\/fusion:7777<\/strong>\u00a0<\/span>(Homepage of Oracle HTTP server) now. It will look as follows.<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring11.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p><span style=\"color: #632423; font-size: 13pt; text-decoration: underline;\"><strong>Create Weblogic Domain for Identity Management<br \/>\n<\/strong><\/span><\/p>\n<p><span style=\"color: #333333;\">Start the configuration from\u00a0<\/span><strong style=\"color: #333333;\">&lt;Middleware Home&gt;\/oracle_common\/commin\/bin<\/strong><\/p>\n<blockquote><p>[oracle@fusion bin]$ cd \/app\/fusion\/fmw\/oracle_common\/common\/bin\/<\/p>\n<p>[oracle@fusion bin]$ .\/config.sh &amp;<\/p><\/blockquote>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring12.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring13.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p>Select &#8220;Create a new Weblogic domain&#8221; and click<strong>\u00a0Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring14.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p><span style=\"color: #333333; background-color: white;\">Select &#8220;<strong>Oracle Enterprise Manager \u2013 11.1.1.0 [oracle_common]<\/strong>&#8221; and &#8220;<strong>Oracle JRF \u2013 11.1.1.0 [oracle_common]<\/strong>&#8221; and click\u00a0<strong>Next<\/strong><\/span><strong><br \/>\n<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring15.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p>Enter details as above and click\u00a0<strong>Next.<br \/>\n<\/strong><\/p>\n<p><strong>Domain Name: IDMDomain<\/strong><\/p>\n<p>Domain Location:<strong> \/app\/fusion\/admin\/IDMDomain\/aserver<br \/>\n<\/strong>Application location: <strong>\/app\/fusion\/admin\/IDMDomain\/aserver\/applications<br \/>\n<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring16.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p><span style=\"background-color: white;\">Since it accepts minimum 8 characters set password again to Oracle123. Please note that you can also change username from weblogic but we will go for default &#8220;weblogic&#8221; username. As informed earlier we will use <strong>Oracle123<\/strong> as password for all steps.<\/span><strong><br \/>\n<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring17.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p>You would see option of Oracle JRockit here. So select that JDK in this list.<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring18.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p>Select &#8220;Administration Server&#8221; and &#8220;Managed Servers, Clusters and Machines&#8221;. Click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring19.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p>Keep defaults but make a note of the port since this will be widely used during next part of installation. Click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring20.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p>Just click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring21.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p>Click\u00a0<strong>Next<\/strong>\u00a0again<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring22.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p>Select Second Tab &#8220;<strong>Unix Machine<\/strong>&#8221; and enter the hostname as above. Click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring23.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p>Click on\u00a0<strong>AdminServer<\/strong>\u00a0and Click right arrow. Click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring24.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p>It will now look as above. Click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring25.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p>On Summary page click\u00a0<strong>Create<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring26.png\" \/><\/p>\n<p>Once installation finishes, click\u00a0<strong>Done<\/strong><\/p>\n<p>Make sure that the encrypted username and password values are already in boot.properties<\/p>\n<blockquote><p>[oracle@fusion security]$ <strong>more \/app\/fusion\/admin\/IDMDomain\/aserver\/IDMDomain\/servers\/\\<\/strong><\/p>\n<p><strong>AdminServer\/security\/boot.properties<\/strong><\/p>\n<p># Generated by Configuration Wizard on Mon Jan 23 10:59:07 GST 2012<\/p>\n<p>username={AES}zaXc3+4y2KGuxnK6WkI7ehKcliQDeandkjdTdu0vpuY=<\/p>\n<p>password={AES}WZ6Zo+j6aGoCyE2nQmCCdboEkA8TDGRlagdSqFGRedo=<\/p><\/blockquote>\n<p><strong>If you don&#8217;t have the boot.properties file or security folder present then create one as follows.<br \/>\n<\/strong><\/p>\n<blockquote><p>[oracle@fusion fusion]$ <strong>mkdir -p\u00a0\/app\/fusion\/admin\/IDMDomain\/aserver\/IDMDomain\/servers\/AdminServer\/security<br \/>\n<\/strong><\/p>\n<p>[oracle@fusion security]$ <strong>cd \\<\/strong><\/p>\n<p><strong>\/app\/fusion\/admin\/IDMDomain\/aserver\/IDMDomain\/servers\/AdminServer\/security<br \/>\n<\/strong><\/p>\n<p>[oracle@fusion security]$ <strong>vi boot.properties<\/strong><\/p>\n<p>&lt;Enter following values and save the file&gt;<\/p>\n<p>username=weblogic<\/p>\n<p>password=Oracle123<\/p><\/blockquote>\n<p><strong>Next time when you restart Admin server it will encrypt the username and password automatically.<\/strong><\/p>\n<p><span style=\"color: #333333;\"><strong>Start Node manager<\/strong><br \/>\n<\/span><\/p>\n<blockquote><p>[oracle@fusion security]$ cd \/app\/fusion\/fmw\/wlserver_10.3\/server\/bin\/<\/p>\n<p>[oracle@fusion bin]$ .\/startNodeManager.sh &amp;<\/p><\/blockquote>\n<p><strong><span style=\"color: #333333;\">Set StartScriptEnabled=true in nodemanager.properties by running following script<\/span><br \/>\n<\/strong><\/p>\n<blockquote><p>[oracle@fusion bin]$ cd \/app\/fusion\/fmw\/oracle_common\/common\/bin<\/p>\n<p>[oracle@fusion bin]$ .\/setNMProps.sh<\/p>\n<p>Appending required nodemanager.properties<\/p><\/blockquote>\n<p><span style=\"color: #333333;\">Verify the change.<\/span><\/p>\n<blockquote><p><strong>[oracle@fusion bin]$\u00a0tail -f\u00a0\/app\/fusion\/fmw\/wlserver_10.3\/common\/nodemanager\/nodemanager.properties<\/strong><\/p>\n<p>#Required NM Property overrides (append to existing nodemanager.properties)<\/p>\n<p>StartScriptEnabled=true<\/p><\/blockquote>\n<p>Kill node manager script. Start Node Manager again as follows.<\/p>\n<blockquote><p><strong>[oracle@fusion bin]$\u00a0nohup .\/startNodeManager.sh &amp;<\/strong><\/p><\/blockquote>\n<p>The log file should show following entries to confirm that Node manager came up successfully.<\/p>\n<blockquote><p>\u2026<\/p>\n<p>INFO: Secure socket listener started on port 5556<\/p><\/blockquote>\n<p><span style=\"color: #333333; text-decoration: underline;\"><strong>Start Weblogic AdminServer<\/strong><\/span><\/p>\n<blockquote><p>[oracle@fusion bin]$\u00a0<strong>nohup<\/strong><br \/>\n<strong>\/app\/fusion\/admin\/IDMDomain\/aserver\/IDMDomain\/bin\/startWebLogic.sh &amp;<\/strong><\/p><\/blockquote>\n<p><span style=\"color: #333333;\">tail nohup.out file until it shows following message.<br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333;\">&lt;Jan 23, 2012 11:55:21 AM GST&gt; &lt;Notice&gt; &lt;WebLogicServer&gt; &lt;BEA-000360&gt; &lt;Server started in RUNNING mode&gt;<br \/>\n<\/span><\/p>\n<blockquote><p><strong>Note:<\/strong> If you ever get error like<\/p>\n<p><strong>&lt;Info&gt; &lt;Management&gt; &lt;BEA-141281&gt; &lt;unable to get file lock, will retry &#8230;&gt;<\/strong><\/p>\n<p>Then do the following<\/p>\n<p>Kill any running processes for startWeblogic.sh and then remove the lock files as follows.<\/p>\n<p>-bash-3.2$ rm \/app\/fusion\/admin\/IDMDomain\/aserver\/IDMDomain\/servers\/AdminServer\/tmp\/AdminServer.lok<\/p>\n<p>This error appears if you the admin server or managed server did not stop properly earlier.<\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><strong style=\"color: #333333;\">Open Weblogic Admin Console<\/strong><\/p>\n<p><span style=\"color: #333333;\">Launch Weblogic Admin console through<strong><br \/>\n<\/strong><\/span><span style=\"color: #225588;\"><strong>http:\/\/fusion:7001\/console<\/strong><\/span><span style=\"color: #333333;\"><br \/>\n<\/span><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring27.png\" \/><span style=\"color: #333333;\"><br \/>\n<\/span><\/p>\n<p>Login with weblogic\/Oracle123<br \/>\n<img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring28.png\" \/><span style=\"color: #333333;\"><br \/>\n<\/span><br \/>\n<strong>Note:<\/strong> Go to preferences and change &#8220;automatic acquire lock&#8221; settings to avoid accidental changes.<br \/>\n<img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring29.png\" \/><span style=\"color: #333333;\"><br \/>\n<\/span><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423;\"><strong>Configuring HTTP server for the Administration Server<\/strong><\/span><span style=\"color: #333333;\"><br \/>\n<\/span><br \/>\n<span style=\"color: #333333;\">Create a new file <strong>admin.conf<\/strong> as follows.<\/span><\/p>\n<blockquote><p>[oracle@fusion moduleconf]$\u00a0<strong>more\u00a0<\/strong><strong>\/app\/fusion\/admin\/ohs_inst1\/config\/OHS\/ohs1\/moduleconf\/admin.conf<\/strong><\/p>\n<p><span style=\"color: #333333;\"># Admin Server and EM<br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333;\"> &lt;Location \/console&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333;\"> SetHandler weblogic-handler<br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333;\"> WebLogicHost fusion<br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333;\"> WeblogicPort 7001<br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333;\"> &lt;\/Location&gt;<br \/>\n<\/span><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #333333;\"> &lt;Location \/consolehelp&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333;\"> SetHandler weblogic-handler<br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333;\"> WebLogicHost fusion<br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333;\"> WeblogicPort 7001<br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333;\"> &lt;\/Location&gt;<br \/>\n<\/span><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #333333;\"> &lt;Location \/em&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333;\"> SetHandler weblogic-handler<br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333;\"> WebLogicHost fusion<br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333;\"> WeblogicPort 7001<br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333;\"> &lt;\/Location&gt;<br \/>\n<\/span><\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #333333;\"><strong>Restart http server as follows.<br \/>\n<\/strong><\/span><\/p>\n<blockquote><p>ORACLE_HOME=\/app\/fusion\/fmw\/web<\/p>\n<p>export ORACLE_HOME<\/p>\n<p>ORACLE_INSTANCE=\/app\/fusion\/admin\/ohs_inst1<\/p>\n<p>export ORACLE_INSTANCE<\/p>\n<p>PATH=$ORACLE_HOME\/opmn\/bin:$PATH<\/p>\n<p>export PATH<\/p>\n<p>opmnctl stopall<\/p>\n<p>opmnctl startall<\/p><\/blockquote>\n<h3><span style=\"color: #632423;\"><strong>Register HTTP server with Weblogic Server<br \/>\n<\/strong><\/span><\/h3>\n<p><span style=\"color: #333333;\">Now we need to Register HTTP server with Weblogic Server so that Enterprise Manager can monitor the instance.<\/span><\/p>\n<blockquote><p>[oracle@fusion ~]$\u00a0<strong>opmnctl registerinstance -adminHost fusion -adminport 7001 -adminUsername weblogic<\/strong><\/p>\n<p>Command requires login to weblogic admin server (fusion):<\/p>\n<p>Username: weblogic<\/p>\n<p>Password:<\/p>\n<p>\u2026<\/p>\n<p>Done<\/p>\n<p>Registering instance<\/p>\n<p>Command succeeded.<\/p><\/blockquote>\n<p><span style=\"color: #333333;\"><strong>Note:<\/strong> We will not enable load-balancer access since we have skipped load-balancing in this single node installation guide.<br \/>\n<\/span><\/p>\n<p>Now you can launch Admin Server via Web server port 7777<\/p>\n<p><a href=\"http:\/\/fusion:7777\/console\"><strong>http:\/\/fusion:7777\/console<\/strong><\/a><\/p>\n<p><a href=\"http:\/\/fusion:7777\/em\"><strong>http:\/\/fusion:7777\/em<\/strong><\/a><br \/>\n<span style=\"color: #333333;\"><span style=\"background-color: white;\"><strong>Enable Weblogic Plugin<\/strong><\/span><br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333; background-color: white;\">Log in the Oracle Weblogic Server Administration and click on Lock and Edit. Click on IDMDomain and Click on Configuration tab and then select the Web Applications tab.<br \/>\n<\/span><\/p>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring30.png\" \/><span style=\"color: #333333;\"><br \/>\n<\/span><br \/>\n<strong>Scroll down and enable &#8220;Weblogic Plug-in Enabled&#8221;.<\/strong><\/p>\n<p><a href=\"http:\/\/bloggingaboutoracleapplications.org\/wp-content\/uploads\/431.png\"><span style=\"color: #225588; text-decoration: underline;\"><br \/>\n<\/span><\/a><span style=\"color: #333333;\">Click on Save and Activate the Changes.<br \/>\n<\/span><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring31.png\" \/><span style=\"color: #333333;\"><br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333;\"><span style=\"text-decoration: underline;\"><strong>Restart the Weblogic Administration Server.<\/strong><\/span><br \/>\n<\/span><\/p>\n<p>&nbsp;<\/p>\n<p>Check Enterprise Manager by launching<strong> <a href=\"http:\/\/fusion\/em\"><span style=\"color: blue; text-decoration: underline;\">http:\/\/fusion:7777\/em<\/span><\/a><br \/>\n<\/strong><\/p>\n<p>Login with weblogic\/&lt;password&gt;<\/p>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring32.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p>Since we are using web server port for launching all pages, we need to change the frontend host and port to the one used by web server.<\/p>\n<p>Login to Weblogic Admin console.<\/p>\n<p>In the preferences link on the top, shared <strong>preferences-&gt;deselect Follow Configuration Changes<\/strong>.<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring33.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p>Click <strong>Lock and Edit<\/strong>. Select <strong>Servers-&gt;AdminServer.<\/strong> In the <strong>protocols<\/strong> tab click on <strong>HTTP<\/strong> and change the following values. Now click on Activate changes.<\/p>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring34.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"font-size: 13pt;\"><strong><span style=\"color: #632423; text-decoration: underline;\">Extending the Domain with Oracle Internet Directory<\/span><span style=\"color: #333333;\"><br \/>\n<\/span><\/strong><\/span><\/p>\n<p><span style=\"color: #333333;\">Start the configuration from\u00a0<\/span><strong style=\"color: #333333;\">&lt;IDM Oracle Home\/bin<\/strong><\/p>\n<blockquote><p>[oracle@fusion bin]$\u00a0<strong>cd \/app\/fusion\/fmw\/idm\/bin<\/strong><\/p>\n<p>[oracle@fusion bin]$\u00a0<strong>.\/config.sh &amp;<\/strong><\/p><\/blockquote>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring35.png\" \/><strong><br \/>\n<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring36.png\" \/><\/p>\n<p>Click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring37.png\" \/><\/p>\n<p>Select &#8220;<strong>Configure Without A Domain<\/strong>&#8221; and click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring38.png\" \/><\/p>\n<p>Enter values as follows. Click\u00a0<strong>Next<br \/>\n<\/strong><\/p>\n<p>Instance Location: <strong>\/app\/fusion\/admin\/oid_inst1<\/strong><\/p>\n<p>Instance Name: <strong>oid_inst1<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring39.png\" \/><\/p>\n<p>Deselect email notification and click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring40.png\" \/><\/p>\n<p>Select only &#8220;<strong>Oracle Internet Directory<\/strong>&#8221; and click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring41.png\" \/><\/p>\n<p>Select &#8220;<strong>Specify Ports using Configuration File<\/strong>&#8221; and enter file name as\u00a0<strong>\/home\/oracle\/staticports.ini<\/strong><\/p>\n<p>In another terminal window copy the staticports.ini file to home directory.<\/p>\n<blockquote><p>[oracle@fusion bin]$\u00a0<strong>cp \/app\/fusion\/provisioning\/idm\/idm\/Disk1\/stage\/Response\/staticports.ini ~\/<\/strong><\/p><\/blockquote>\n<p><strong>Click on View\/Edit file<br \/>\n<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring42.png\" \/><\/p>\n<p>Change the values as follows and click <strong>Save<\/strong>.<\/p>\n<blockquote><p><span style=\"color: #ff0000;\"><strong>VERY IMPORTANT:<\/strong><\/span><\/p>\n<p>As per Oracle Manual ideally we should have changed it to as follows.<\/p>\n<p>#The Non-SSL port for OID<\/p>\n<p>Oracle Internet Directory Port No = 389<\/p>\n<p>#The SSL port for OID<\/p>\n<p>Oracle Internet Directory (SSL) Port No = 636<\/p>\n<p><strong>But OID fails to configure and start at the end of installation with these values so we will stick to the OID values for 11g in the staticports.ini and just remove the comments.<\/strong><\/p>\n<p>#The Non-SSL port for OID<\/p>\n<p>Oracle Internet Directory Port No = <strong>3060<\/strong><\/p>\n<p>#The SSL port for OID<\/p>\n<p>Oracle Internet Directory (SSL) Port No = <strong>3061<\/strong><\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring43.png\" \/><\/p>\n<p>Once saved, click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring44.png\" \/><\/p>\n<p>Enter <strong>Oracle123<\/strong> or any suitable password. If you are using different passwords then please make a note of all of them. Click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring45.png\" \/><\/p>\n<p>Since we are not using any domains as such but as we have added an entry in our hosts file for <strong>fusion.localdomain<\/strong>, we will add &#8220;<strong>dc=localdomain<\/strong>&#8221; for Realm. Enter <strong>Oracle123<\/strong> or any suitable password. Click\u00a0<strong>Next<\/strong><\/p>\n<blockquote><p>[oracle@fusion ~]$ more \/etc\/hosts<\/p>\n<p>127.0.0.1 localhost.localdomain localhost<\/p>\n<p>192.168.56.101 fusion fusion.localdomain<\/p><\/blockquote>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring46.png\" \/><\/p>\n<p>Save summary if needed and click\u00a0<strong>Configure<\/strong>\u00a0to start configuration.<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring47.png\" \/><\/p>\n<p>Once installation finishes, click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring48.png\" \/><\/p>\n<p>Save installation summary if needed and click\u00a0<strong>Finish<\/strong>\u00a0to complete the installation.<\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #333333;\"><strong>Validate the OID installation<\/strong><\/span><\/p>\n<blockquote><p>[oracle@fusion ~]$\u00a0<strong>export ORACLE_HOME=\/app\/fusion\/fmw\/idm<\/strong><\/p>\n<p>[oracle@fusion ~]$\u00a0<strong>export ORACLE_INSTANCE=\/app\/fusion\/admin\/oid_inst1<\/strong><\/p>\n<p>[oracle@fusion ~]$\u00a0<strong>export PATH= \\<\/strong><\/p>\n<p><strong>$ORACLE_HOME\/opmn\/bin:$ORACLE_HOME\/bin:$ORACLE_HOME\/ldap\/bin: \\<\/strong><\/p>\n<p><strong>$ORACLE_HOME\/ldap\/admin:$PATH<\/strong><\/p>\n<p>[oracle@fusion ~]$\u00a0<strong>ldapbind -h fusion -p 3060 -D &#8220;cn=orcladmin&#8221; -q<\/strong><\/p>\n<p>Please enter bind password:<\/p>\n<p>bind successful<\/p>\n<p>[oracle@fusion ~]$\u00a0<strong>ldapbind -h fusion -p 3061 -D &#8220;cn=orcladmin&#8221; -q -U 1<\/strong><\/p>\n<p>Please enter bind password:<\/p>\n<p>bind successful<\/p>\n<p>[oracle@fusion ~]$\u00a0<strong>opmnctl status<\/strong><\/p>\n<p>Processes in Instance: oid_inst1<\/p>\n<p>\u2014\u2014\u2014\u2014\u2014\u2014\u2014\u2014\u2014\u2014\u2014+\u2014\u2014\u2014\u2014\u2014\u2014\u2013+\u2014\u2014\u2014+\u2014\u2014\u2014<\/p>\n<p>ias-component | process-type | pid | status<\/p>\n<p>\u2014\u2014\u2014\u2014\u2014\u2014\u2014\u2014\u2014\u2014\u2014+\u2014\u2014\u2014\u2014\u2014\u2014\u2013+\u2014\u2014\u2014+\u2014\u2014\u2014<\/p>\n<p>oid1 | oidldapd | 19810 | Alive<\/p>\n<p>oid1 | oidldapd | 19798 | Alive<\/p>\n<p>oid1 | oidmon | 19785 | Alive<\/p>\n<p>EMAGENT | EMAGENT | 19325 | Alive<\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423;\"><span style=\"font-size: 12pt;\"><strong>Registering Oracle Internet Directory with the WebLogic Server Domain<\/strong><\/span><span style=\"font-size: 8pt;\"><br \/>\n<\/span><\/span><\/p>\n<blockquote><p>[oracle@fusion provisioning]$ <strong>export ORACLE_HOME=\/app\/fusion\/fmw\/idm<\/strong><\/p>\n<p>[oracle@fusion provisioning]$ <strong>export ORACLE_INSTANCE=\/app\/fusion\/admin\/oid_inst1<\/strong><\/p>\n<p>[oracle@fusion provisioning]$ <strong>$ORACLE_INSTANCE\/bin\/opmnctl \\<\/strong><\/p>\n<p><strong>registerinstance -adminHost fusion -adminPort 7001 -adminUsername weblogic<\/strong><\/p>\n<p>Command requires login to weblogic admin server (fusion):<\/p>\n<p>Username: <strong>weblogic<\/strong><\/p>\n<p>Password:<\/p>\n<p>Registering instance<\/p>\n<p>Command succeeded.<\/p><\/blockquote>\n<p><strong>Note:<\/strong>\u00a0We have skipped next steps related to SSL since we are setting up non-SSL connections here.<br \/>\n<span style=\"color: #632423;\"><span style=\"font-size: 13pt;\"><strong>Update the Enterprise Manager Repository URL<\/strong><\/span><span style=\"font-size: 9pt;\"><br \/>\n<\/span><\/span><\/p>\n<p><span style=\"color: black;\"><span style=\"background-color: white;\">Next we will update the Enterprise Manager Repository URL using the emctl utility with the<\/span>\u00a0<strong>switchOMS<\/strong><span style=\"background-color: white;\">flag. The emctl utility is located under the\u00a0<\/span><em>ORACLE_INSTANCE<\/em><span style=\"font-size: 12pt;\"><span style=\"background-color: white;\">\/EMAGENT\/EMAGENT\/bin<\/span>\u00a0<\/span><span style=\"background-color: white;\">directory.<\/span><\/span><span style=\"color: #333333;\"><br \/>\n<\/span><\/p>\n<blockquote><p>[oracle@fusion ~]$ <span style=\"color: red;\"><strong>cd $ORACLE_INSTANCE\/EMAGENT\/EMAGENT\/bin<\/strong><\/span><\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>.\/emctl switchOMS <a href=\"http:\/\/fusion:7001\/em\/upload\"><span style=\"text-decoration: underline;\">http:\/\/fusion:7001\/em\/upload<\/span><\/a><\/strong><\/span><\/p>\n<p>Oracle Enterprise Manager 10g Release 5 Grid Control 10.2.0.5.0.<\/p>\n<p>Copyright (c) 1996, 2009 Oracle Corporation. All rights reserved.<\/p>\n<p>SwitchOMS succeeded.<\/p><\/blockquote>\n<p>We can now verify whether this instance is registered for monitoring agent.<\/p>\n<p>Login to\u00a0<strong>http:\/\/fusion:7001\/em<\/strong><\/p>\n<p>Click on\u00a0<strong>Farm-&gt;Agent monitored targets.<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring49.png\" \/><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring50.png\" \/><\/p>\n<p style=\"background: white;\"><span style=\"color: #632423; font-size: 14pt; text-decoration: underline;\"><strong>Extending the Domain with Oracle Directory Service Manager (ODSM)<\/strong><\/span><span style=\"color: #333333; font-size: 8pt;\"><br \/>\n<\/span><\/p>\n<p>Start the configuration from\u00a0<strong>&lt;IDM Oracle Home&gt;\/bin<\/strong><\/p>\n<blockquote><p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>cd \/app\/fusion\/fmw\/idm\/bin\/<\/strong><\/span><\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>.\/config.sh &amp;<br \/>\n<\/strong><\/span><\/p><\/blockquote>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring51.png\" \/><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring52.png\" \/><\/p>\n<p>Click<strong>\u00a0Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring53.png\" \/><\/p>\n<p>Select &#8220;<strong>Extend Existing Domain<\/strong>&#8221; and enter details of existing weblogic Server and AdminServer port. Click <strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring54.png\" \/><\/p>\n<p>You can ignore this error since we created this domain using the Identity Management installer. Click\u00a0<strong>Yes <\/strong>to ignore.<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring55.png\" \/><\/p>\n<p>Verify that the weblogic server directory shown is correct as per previous steps. Specify name and path for Oracle Directory Service instance. Make sure to keep the instance in same parent directory as previous instances. Click\u00a0<strong>Next<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring56.png\" \/><\/p>\n<p>Deselect email notification and click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring57.png\" \/><\/p>\n<p>Select Oracle &#8220;<strong>Directory Service Manager<\/strong>&#8221; and click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring58.png\" \/><\/p>\n<p>Select &#8220;<strong>Specify Ports using Configuration File<\/strong>&#8221; and enter file name as\u00a0<strong>\/home\/oracle\/staticports.ini<\/strong><\/p>\n<p>Meanwhile in another terminal window copy the\u00a0<strong>staticports.ini<\/strong>\u00a0to home directory.<\/p>\n<blockquote><p>[oracle@fusion bin]$ cp -p \/app\/fusion\/provisioning\/idm\/idm\/Disk1\/stage\/Response\/staticports.ini ~\/<\/p><\/blockquote>\n<p>Click <strong>View\/Edit<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring59.png\" \/><\/p>\n<p>Uncomment the ODS Server Port and keep it default <strong>7006<\/strong>. Click <strong>Save<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring60.png\" \/><\/p>\n<p>Once Saved click <strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring61.png\" \/><\/p>\n<p>Save summary if needed and click\u00a0<strong>Configure<\/strong>\u00a0to start configuration.<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring62.png\" \/><\/p>\n<p>Once installation finishes, click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring63.png\" \/><\/p>\n<p>Save installation summary if needed and click\u00a0<strong>Finish<\/strong>\u00a0to complete the installation.<\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423; font-size: 12pt;\"><strong>Password-less startup for ODS<\/strong><\/span><\/p>\n<blockquote><p>cd \/app\/fusion\/admin\/IDMDomain\/aserver\/IDMDomain\/servers\/wls_ods1\/security\/\u00a0(if not present create this structure)<\/p>\n<p>cp ..\/..\/AdminServer\/security\/boot.properties .<\/p>\n<p>cd \/app\/fusion\/admin\/IDMDomain\/aserver\/IDMDomain\/bin\/<\/p>\n<p>nohup .\/startManagedWebLogic.sh wls_ods1 &amp;<\/p><\/blockquote>\n<p>Now you can access ODS homepage at<span style=\"color: #333333;\">\u00a0<\/span><span style=\"font-size: 13pt;\"><span style=\"color: blue; text-decoration: underline;\">http:\/\/fusion:7006\/odsm<\/span><br \/>\n<\/span><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring64.png\" \/><\/p>\n<p>It will now also show up in <a href=\"http:\/\/fusion:7777\/em\">http:\/\/fusion:7777\/em<\/a><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring65.png\" \/><\/p>\n<p><span style=\"font-size: 12pt;\"><strong>Configure Oracle Directory Service with OID<\/strong><\/span><span style=\"font-size: 9pt;\"><br \/>\n<\/span><br \/>\n<img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring66.png\" \/><span style=\"color: #333333; font-size: 9pt;\"><br \/>\n<\/span><\/p>\n<p>Click on\u00a0<strong>Connect to a directory<\/strong>\u00a0-&gt;\u00a0<strong>Create A New Connection<\/strong><br \/>\n<img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring67.png\" \/><span style=\"color: #333333; font-size: 9pt;\"><br \/>\n<\/span><\/p>\n<blockquote><p>Enter the details for OID.<\/p>\n<p>Name:\u00a0<strong>fusion-oid<\/strong><\/p>\n<p>Server:\u00a0<strong>fusion<\/strong><\/p>\n<p>SSL Enabled:\u00a0<strong>Unchecked<\/strong><\/p>\n<p>User Name:\u00a0<strong>cn=orcladmin<\/strong><\/p>\n<p>Password:\u00a0<strong>Oracel123<\/strong><\/p>\n<p>Start Page:\u00a0<strong>Home<\/strong><\/p>\n<p>Click\u00a0<strong>Connect<\/strong><\/p><\/blockquote>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring68.png\" \/><span style=\"color: #333333; font-size: 9pt;\"><br \/>\n<\/span><\/p>\n<p>Once connection is successful, you should be able to see OID page<\/p>\n<p><span style=\"color: #333333; font-size: 9pt;\">.<img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring69.png\" \/><br \/>\n<\/span><\/p>\n<p>You can randomly check whether you are able to see details of any user, for example\u00a0<strong>cn=orcladmin<\/strong><br \/>\n<span style=\"color: #632423; font-size: 13pt;\"><strong>Configuring Oracle HTTP Servers to Access the ODSM Console<\/strong><\/span><\/p>\n<blockquote><p>[oracle@fusion moduleconf]$\u00a0<strong>cd \/app\/fusion\/admin\/ohs_inst1\/config\/OHS\/ohs1\/moduleconf\/<\/strong><\/p>\n<p>[oracle@fusion moduleconf]$\u00a0<strong>vi admin.conf<br \/>\n<\/strong><\/p>\n<p><strong># Append following lines in admin.conf<\/strong><\/p>\n<p><span style=\"color: red;\"><strong>&lt;Location \/odsm&gt;<br \/>\n<\/strong><\/span><\/p>\n<p><span style=\"color: red;\"><strong> SetHandler weblogic-handler<br \/>\n<\/strong><\/span><\/p>\n<p><span style=\"color: red;\"><strong> WebLogicHost fusion<br \/>\n<\/strong><\/span><\/p>\n<p><span style=\"color: red;\"><strong> WeblogicPort 7006<br \/>\n<\/strong><\/span><\/p>\n<p><span style=\"color: red;\"><strong> &lt;\/Location&gt;<br \/>\n<\/strong><\/span><\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #333333;\"><strong>Restart HTTP server.<\/strong><br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333;\">Now we can access ODSM through\u00a0<\/span><span style=\"color: #225588; text-decoration: underline;\">http:\/\/fusion:7777\/odsm\/<\/span><span style=\"color: #333333;\"><br \/>\n<\/span><\/p>\n<p><a href=\"http:\/\/fusion:7777\/odsm\"><span style=\"color: blue; text-decoration: underline;\">http:\/\/fusion:7777\/odsm<\/span><\/a><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423;\"><strong><span style=\"font-size: 13pt;\">Apply following patches<\/span><\/strong><\/span><\/p>\n<ol>\n<li><span style=\"background-color: white;\"><strong>12995033<\/strong> for IDM Tools IAM_ORACLE_HOME<br \/>\n<\/span><\/li>\n<li><span style=\"background-color: white;\"><strong>12989739<\/strong> for OAM 11g IAM_ORACLE_HOME<br \/>\n<\/span><\/li>\n<li><span style=\"background-color: white;\"><strong>12961473<\/strong>, 14109501 (could not locate this second patch) for OIM IAM_ORACLE_HOME [Skip post steps for 12961473 for now since there is another patch to be applied later which has same post steps and is subset patch for this]<br \/>\n<\/span><\/li>\n<li><span style=\"background-color: white;\"><strong>12937765<\/strong> for OID IDM_ORACLE_HOME <\/span><br \/>\n<span style=\"background-color: white;\"><br \/>\n<\/span><\/li>\n<\/ol>\n<p><span style=\"background-color: white;\">There is a patch listed for Webgate but you can apply it once we install Webgate. We have skipped this for now.<br \/>\n<\/span><\/p>\n<p><span style=\"background-color: white;\"><strong>12816881<\/strong> for OAM 10g WebGate<br \/>\n<\/span><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423; font-size: 16pt; text-decoration: underline;\"><strong>Preparing Identity and Policy Stores<br \/>\n<\/strong><\/span><\/p>\n<p><strong style=\"color: #632423; font-size: 14pt;\">A) Preparing the OPSS Policy Store<\/strong><\/p>\n<p><strong style=\"color: #632423; font-size: 12pt;\">Creating Policy Store Users and the Policy Container<\/strong><\/p>\n<blockquote><p>[oracle@fusion ~]$ <strong>cd \/app\/fusion\/fmw\/iam\/idmtools\/bin\/<\/strong><\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>export ORACLE_HOME=\/app\/fusion\/fmw\/iam<\/strong><\/span><\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>export JAVA_HOME=\/app\/fusion\/jdk6<\/strong><\/span><\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>export IDM_HOME=\/app\/fusion\/fmw\/idm<\/strong><br \/>\n<\/span><\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>export MW_HOME=\/app\/fusion\/fmw<\/strong><\/span><\/p>\n<p>&nbsp;<\/p>\n<p>[oracle@fusion bin]$ more <span style=\"color: red;\"><strong>policystore.props<\/strong><\/span><\/p>\n<p>POLICYSTORE_HOST: fusion<\/p>\n<p>POLICYSTORE_PORT: 3060<\/p>\n<p>POLICYSTORE_BINDDN: cn=orcladmin<\/p>\n<p>POLICYSTORE_READONLYUSER: PolicyROUser<\/p>\n<p>POLICYSTORE_READWRITEUSER: PolicyRWUser<\/p>\n<p>POLICYSTORE_SEARCHBASE: dc=localdomain<\/p>\n<p>POLICYSTORE_CONTAINER: cn=jpsroot<\/p>\n<p>&nbsp;<\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>.\/idmConfigTool.sh -configPolicyStore input_file=policystore.props<\/strong><\/span><\/p>\n<p>Enter Policy Store Bind DN password :<\/p>\n<p>\u2026<\/p>\n<p>Enter User Password for PolicyROUser:<\/p>\n<p>Confirm User Password for PolicyROUser:<\/p>\n<p>\u2026<\/p>\n<p>Enter User Password for PolicyRWUser:<\/p>\n<p>Confirm User Password for PolicyRWUser:<\/p>\n<p>\u2026<\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423; font-size: 12pt;\"><strong>Reassociating the Policy and Credential Store<\/strong><\/span><\/p>\n<blockquote><p>[oracle@fusion bin]$ <strong>cd \/app\/fusion\/fmw\/oracle_common\/common\/bin\/<\/strong><\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>.\/wlst.sh<\/strong><\/span><\/p>\n<p>wls:\/offline&gt; <span style=\"color: red;\"><strong>connect(&#8220;weblogic&#8221;,&#8221;Oracle123&#8243;,&#8221;t3:\/\/fusion:7001&#8243;)<\/strong><\/span><\/p>\n<p>wls:\/IDMDomain\/serverConfig&gt; <span style=\"color: red;\"><strong>reassociateSecurityStore(domain=&#8221;IDMDomain&#8221;, admin=&#8221;cn=orcladmin&#8221;,password=&#8221;Oracle123&#8243;, ldapurl=&#8221;ldap:\/\/fusion:3060&#8243;,servertype=&#8221;OID&#8221;, jpsroot=&#8221;cn=jpsroot&#8221;)<br \/>\n<\/strong><\/span><\/p>\n<p>\u2026<\/p>\n<p>\u2026<\/p>\n<p>Jps Configuration has been changed. Please restart the application server.<\/p>\n<p>wls:\/IDMDomain\/serverConfig&gt; wls:\/IDMDomain\/serverConfig&gt; <span style=\"color: red;\"><strong>exit()<\/strong><\/span><\/p><\/blockquote>\n<p><strong>Restart Weblogic Admin Server.<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423; font-size: 14pt;\"><strong><strong>B)\u00a0<\/strong>Preparing the Identity Store<br \/>\n<\/strong><\/span><\/p>\n<p><strong style=\"color: #632423; font-size: 12pt;\">Extending Directory Schema for Oracle Access Manager<\/strong><\/p>\n<blockquote><p>[oracle@fusion bin]$ more <span style=\"color: red;\"><strong>extend.props<\/strong><\/span><\/p>\n<p>IDSTORE_HOST: fusion<\/p>\n<p>IDSTORE_PORT: 3060<\/p>\n<p>IDSTORE_BINDDN: cn=orcladmin<\/p>\n<p>IDSTORE_USERNAMEATTRIBUTE: cn<\/p>\n<p>IDSTORE_LOGINATTRIBUTE: uid<\/p>\n<p>IDSTORE_USERSEARCHBASE: cn=Users,dc=localdomain<\/p>\n<p>IDSTORE_GROUPSEARCHBASE: cn=Groups,dc=localdomain<\/p>\n<p>IDSTORE_SEARCHBASE: dc=localdomain<\/p>\n<p>IDSTORE_SYSTEMIDBASE: cn=systemids,dc=localdomain<\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>.\/idmConfigTool.sh -preConfigIDStore input_file=extend.props<\/strong><\/span><\/p>\n<p>Enter ID Store Bind DN password :<\/p><\/blockquote>\n<p><strong style=\"color: #632423; font-size: 12pt;\">Creating Users and Groups for Oracle Access Manager<\/strong><\/p>\n<blockquote><p>[oracle@fusion bin]$ more <span style=\"color: red;\"><strong>oam.props<\/strong><\/span><\/p>\n<p>IDSTORE_HOST: fusion<\/p>\n<p>IDSTORE_PORT: 3060<\/p>\n<p>IDSTORE_BINDDN: cn=orcladmin<\/p>\n<p>IDSTORE_USERNAMEATTRIBUTE: cn<\/p>\n<p>IDSTORE_LOGINATTRIBUTE: uid<\/p>\n<p>IDSTORE_USERSEARCHBASE: cn=Users,dc=localdomain<\/p>\n<p>IDSTORE_GROUPSEARCHBASE: cn=Groups,dc=localdomain<\/p>\n<p>IDSTORE_SEARCHBASE: dc=localdomain<\/p>\n<p>POLICYSTORE_SHARES_IDSTORE: true<\/p>\n<p>OAM11G_IDSTORE_ROLE_SECURITY_ADMIN:OAMAdministrators<\/p>\n<p>IDSTORE_OAMSOFTWAREUSER:oamLDAP<\/p>\n<p>IDSTORE_OAMADMINUSER:oamadmin<\/p>\n<p>&nbsp;<\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>.\/idmConfigTool.sh -prepareIDStore mode=OAM input_file=oam.props<\/strong><\/span><\/p>\n<p>Enter ID Store Bind DN password :<\/p>\n<p>\u2026<\/p>\n<p>Enter User Password for oamadmin:<\/p>\n<p>Confirm User Password for oamadmin:<\/p>\n<p>\u2026<\/p>\n<p>Enter User Password for oamLDAP:<\/p>\n<p>Confirm User Password for oamLDAP:<\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423; font-size: 12pt;\"><strong>Creating Users and Groups for Oracle Identity Manager<\/strong><\/span><\/p>\n<blockquote><p>[oracle@fusion bin]$ more <span style=\"color: red;\"><strong>oim.props<\/strong><\/span><\/p>\n<p>IDSTORE_HOST: fusion<\/p>\n<p>IDSTORE_PORT: 3060<\/p>\n<p>IDSTORE_BINDDN: cn=orcladmin<\/p>\n<p>IDSTORE_USERNAMEATTRIBUTE: cn<\/p>\n<p>IDSTORE_LOGINATTRIBUTE: uid<\/p>\n<p>IDSTORE_USERSEARCHBASE: cn=Users,dc=localdomain<\/p>\n<p>IDSTORE_GROUPSEARCHBASE: cn=Groups,dc=localdomain<\/p>\n<p>IDSTORE_SEARCHBASE: dc=localdomain<\/p>\n<p>POLICYSTORE_SHARES_IDSTORE: true<\/p>\n<p>IDSTORE_SYSTEMIDBASE: cn=systemids,dc=localdomain<\/p>\n<p>IDSTORE_OIMADMINUSER: oimLDAP<\/p>\n<p>IDSTORE_OIMADMINGROUP: OIMAdministrators<\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>.\/idmConfigTool.sh -prepareIDStore mode=OIM input_file=oim.props<\/strong><\/span><\/p>\n<p>Enter ID Store Bind DN password :<\/p>\n<p>\u2026<\/p>\n<p>Enter User Password for oimLDAP:<\/p>\n<p>Confirm User Password for oimLDAP:<\/p>\n<p>\u2026<\/p>\n<p>Enter User Password for xelsysadm:<\/p>\n<p>Confirm User Password for xelsysadm:<\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423; font-size: 12pt;\"><strong>Creating Users and Groups for Oracle WebLogic Server<br \/>\n<\/strong><\/span><\/p>\n<p><strong>Add a read-only user to cn=orclFAUserReadPrivilegeGroup as follows<\/strong><\/p>\n<blockquote><p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>export ORACLE_HOME=\/app\/fusion\/fmw\/idm<\/strong><\/span><\/p>\n<p>[oracle@fusion bin]$ more <span style=\"color: red;\"><strong>rou_member.ldif<\/strong><\/span><\/p>\n<p>dn: cn=orclFAUserReadPrivilegeGroup,cn=Groups,dc=localdomain<\/p>\n<p>changetype: modify<\/p>\n<p>add: uniquemember<\/p>\n<p>uniquemember: cn=IDROUser,cn=Users,dc=localdomain<\/p>\n<p>&nbsp;<\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>\/app\/fusion\/fmw\/idm\/bin\/ldapmodify -h fusion -p 3060 -D cn=orcladmin -q -f rou_member.ldif<\/strong><\/span><\/p>\n<p>Please enter bind password:<\/p>\n<p>modifying entry cn=orclFAUserReadPrivilegeGroup,cn=Groups,dc=localdomain<\/p>\n<p>&nbsp;<\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>export ORACLE_HOME=\/app\/fusion\/fmw\/iam<\/strong><\/span><\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>more wls.props<\/strong><\/span><\/p>\n<p>IDSTORE_HOST: fusion<\/p>\n<p>IDSTORE_PORT: 3060<\/p>\n<p>IDSTORE_BINDDN: cn=orcladmin<\/p>\n<p>IDSTORE_USERNAMEATTRIBUTE: cn<\/p>\n<p>IDSTORE_LOGINATTRIBUTE: uid<\/p>\n<p>IDSTORE_USERSEARCHBASE: cn=Users, dc=localdomain<\/p>\n<p>IDSTORE_GROUPSEARCHBASE: cn=Groups,dc=localdomain<\/p>\n<p>IDSTORE_SEARCHBASE: dc=localdomain<\/p>\n<p>POLICYSTORE_SHARES_IDSTORE: true<\/p>\n<p>&nbsp;<\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>.\/idmConfigTool.sh -prepareIDStore mode=WLS input_file=wls.props<\/strong><\/span><\/p>\n<p>Enter ID Store Bind DN password :<\/p>\n<p>\u2026<\/p>\n<p>Enter User Password for weblogic_idm:<\/p>\n<p>Confirm User Password for weblogic_idm:<\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423; font-size: 12pt;\"><strong>Creating Users and Groups for Fusion Applications<\/strong><\/span><\/p>\n<blockquote><p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>more fusion.props<\/strong><\/span><\/p>\n<p>IDSTORE_HOST: fusion<\/p>\n<p>IDSTORE_PORT: 3060<\/p>\n<p>IDSTORE_BINDDN: cn=orcladmin<\/p>\n<p>IDSTORE_USERNAMEATTRIBUTE: cn<\/p>\n<p>IDSTORE_READONLYUSER: IDROUser<\/p>\n<p>IDSTORE_READWRITEUSER: IDRWUser<\/p>\n<p>IDSTORE_USERSEARCHBASE:cn=Users,dc=localdomain<\/p>\n<p>IDSTORE_GROUPSEARCHBASE: cn=Groups,dc=localdomain<\/p>\n<p>IDSTORE_SEARCHBASE: dc=localdomain<\/p>\n<p>IDSTORE_SUPERUSER: weblogic_fa<\/p>\n<p>POLICYSTORE_SHARES_IDSTORE: true<\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<blockquote><p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>.\/idmConfigTool.sh -prepareIDStore mode=fusion input_file=fusion.props<\/strong><\/span><\/p>\n<p>Enter ID Store Bind DN password :<\/p>\n<p>*** Creation of IDROUser ***<\/p>\n<p>Mar 22, 2012 3:05:58 PM oracle.ldap.util.LDIFLoader loadOneLdifFile<\/p>\n<p>INFO: -&gt; LOADING: \/app\/fusion\/fmw\/iam\/idmtools\/templates\/oid\/oam_user_template.ldif<\/p>\n<p>Enter User Password for IDROUser:<\/p>\n<p>Confirm User Password for IDROUser:<\/p>\n<p>*** Creation of IDRWUser ***<\/p>\n<p>Mar 22, 2012 3:06:03 PM oracle.ldap.util.LDIFLoader loadOneLdifFile<\/p>\n<p>INFO: -&gt; LOADING: \/app\/fusion\/fmw\/iam\/idmtools\/templates\/oid\/oam_user_template.ldif<\/p>\n<p>Enter User Password for IDRWUser:<\/p>\n<p>Confirm User Password for IDRWUser:<\/p>\n<p>*** Creation of weblogic_fa ***<\/p>\n<p>Mar 22, 2012 3:06:10 PM oracle.ldap.util.LDIFLoader loadOneLdifFile<\/p>\n<p>INFO: -&gt; LOADING: \/app\/fusion\/fmw\/iam\/idmtools\/templates\/oid\/oam_user_template.ldif<\/p>\n<p>Enter User Password for weblogic_fa:<\/p>\n<p>Confirm User Password for weblogic_fa:<\/p>\n<p>Mar 22, 2012 3:06:15 PM oracle.ldap.util.LDIFLoader loadOneLdifFile<\/p>\n<p>INFO: -&gt; LOADING: \/app\/fusion\/fmw\/iam\/idmtools\/templates\/common\/oam_user_read_acl_template.ldif<\/p>\n<p>Mar 22, 2012 3:06:15 PM oracle.ldap.util.LDIFLoader loadOneLdifFile<\/p>\n<p>INFO: -&gt; LOADING: \/app\/fusion\/fmw\/iam\/idmtools\/templates\/oid\/fa_add_pwdpolicy.ldif<\/p>\n<p>Mar 22, 2012 3:06:15 PM oracle.ldap.util.LDIFLoader loadOneLdifFile<\/p>\n<p>INFO: -&gt; LOADING: \/app\/fusion\/fmw\/iam\/idmtools\/templates\/oid\/fa_add_pwdpolicy.ldif<\/p>\n<p>Mar 22, 2012 3:06:15 PM oracle.ldap.util.LDIFLoader loadOneLdifFile<\/p>\n<p>INFO: -&gt; LOADING: \/app\/fusion\/fmw\/iam\/idmtools\/templates\/oid\/fa_add_pwdpolicy.ldif<\/p>\n<p>The tool has completed its operation. Details have been logged to automation.log<\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p>In addition to creating the users, the idmConfigTool command you ran earlier<\/p>\n<p>creates the following groups and assigns users to them:<\/p>\n<p style=\"margin-left: 36pt;\">orclFAGroupReadPrivilegeGroup<\/p>\n<p style=\"margin-left: 36pt;\">orclFAGroupWritePrivilegeGroup<\/p>\n<p style=\"margin-left: 36pt;\">orclFAUserReadPrivilegeGroup<\/p>\n<p style=\"margin-left: 36pt;\">orclFAUserWritePrefsPrivilegeGroup<\/p>\n<p style=\"margin-left: 36pt;\">orclFAUserWritePrivilegeGroup<\/p>\n<p>&nbsp;<\/p>\n<blockquote><p><span style=\"color: red;\"><strong>Important Note:<\/strong><\/span> Check automation.log file now. If you see any message like &#8220;<span style=\"color: red;\"><strong>Error adding user to groups<\/strong><\/span>&#8221; then you must also do following steps. This is due to a bug introduced by one of the pre-requisite patches. If you have not applied these patches then you may not face the error. Regardless, nothing to worry since we have a solution as below.<\/p>\n<p><span style=\"color: red;\">No need to execute these if there were no errors in automation.log file.<\/span><\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>more rog_member.ldif<\/strong><\/span><\/p>\n<p>dn: cn=orclFAGroupReadPrivilegeGroup,cn=Groups,dc=localdomain<\/p>\n<p>changetype: modify<\/p>\n<p>add: uniquemember<\/p>\n<p>uniquemember: cn=IDROUser,cn=Users,dc=localdomain<\/p>\n<p>&nbsp;<\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>more rwu_member.ldif<\/strong><\/span><\/p>\n<p>dn: cn=orclFAUserWritePrivilegeGroup,cn=Groups,dc=localdomain<\/p>\n<p>changetype: modify<\/p>\n<p>add: uniquemember<\/p>\n<p>uniquemember: cn=IDRWUser,cn=Users,dc=localdomain<\/p>\n<p>&nbsp;<\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>more rwg_member.ldif<\/strong><\/span><\/p>\n<p>dn: cn=orclFAGroupWritePrivilegeGroup,cn=Groups,dc=localdomain<\/p>\n<p>changetype: modify<\/p>\n<p>add: uniquemember<\/p>\n<p>uniquemember: cn=IDRWUser,cn=Users,dc=localdomain<\/p>\n<p>&nbsp;<\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>more rwpg_member.ldif<\/strong><\/span><\/p>\n<p>dn: cn=<span style=\"color: black; background-color: white;\">orclFAUserWritePrefsPrivilegeGroup<\/span>,cn=Groups,dc=localdomain<\/p>\n<p>changetype: modify<\/p>\n<p>add: uniquemember<\/p>\n<p>uniquemember: cn=IDRWUser,cn=Users,dc=localdomain<\/p>\n<p>&nbsp;<\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>\/app\/fusion\/fmw\/idm\/bin\/ldapmodify -h fusion -p 3060 -D cn=orcladmin -q -f rog_member.ldif<\/strong><\/span><\/p>\n<p>Please enter bind password:<\/p>\n<p>modifying entry cn=orclFAGroupReadPrivilegeGroup,cn=Groups,dc=localdomain<\/p>\n<p>ldap_modify: Type or value exists<\/p>\n<p>ldap_modify: additional info: uniquemember attribute has duplicate value.<\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: red;\"><strong>Note:<\/strong><\/span> Ignore if you see above error. This confirms that the user was already added to ReadOnly group.<\/p>\n<p>&nbsp;<\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>\/app\/fusion\/fmw\/idm\/bin\/ldapmodify -h fusion -p 3060 -D cn=orcladmin -q -f rwu_member.ldif<\/strong><\/span><\/p>\n<p>Please enter bind password:<\/p>\n<p>modifying entry cn=orclFAUserWritePrivilegeGroup,cn=Groups,dc=localdomain<\/p>\n<p>&nbsp;<\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>\/app\/fusion\/fmw\/idm\/bin\/ldapmodify -h fusion -p 3060 -D cn=orcladmin -q -f rwg_member.ldif<\/strong><\/span><\/p>\n<p>Please enter bind password:<\/p>\n<p>modifying entry cn=orclFAGroupWritePrivilegeGroup,cn=Groups,dc=localdomain<\/p>\n<p>&nbsp;<\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>\/app\/fusion\/fmw\/idm\/bin\/ldapmodify -h fusion -p 3060 -D cn=orcladmin -q -f rwpg_member.ldif<\/strong><\/span><\/p>\n<p>Please enter bind password:<\/p>\n<p>modifying entry cn=orclFAUserWritePrefsPrivilegeGroup,cn=Groups,dc=localdomain<\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><strong style=\"color: #632423; font-size: 13pt;\">Extending the Domain with Oracle Access Manager<\/strong><\/p>\n<blockquote><p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>cd \/app\/fusion\/fmw\/oracle_common\/common\/bin\/<\/strong><\/span><\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>.\/config.sh &amp;<\/strong><\/span><\/p><\/blockquote>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring70.png\" \/><\/p>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring71.png\" \/><\/p>\n<p>Click &#8220;<strong>Extend an existing WebLogic domain<\/strong>&#8221; and click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring72.png\" \/><\/p>\n<p>Scroll down and select\u00a0<strong>admin-&gt;IDMDomain-&gt; aserver -&gt; IDMDomain<\/strong>. Click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring73.png\" \/><\/p>\n<p style=\"background: white;\">Select only &#8220;<strong>Oracle Access Manager with Database Policy Store&#8221;<\/strong>\u00a0and click on Next.<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring74.png\" \/><\/p>\n<p>Here you need to provide the database connection details and choose schema owner username. You can keep the name default but make sure to keep a note of it since you will need this later. Choose a password for example <strong>Oracle123<\/strong>. Click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring75.png\" \/><span style=\"color: #333333; font-size: 9pt;\"><strong><br \/>\n<\/strong><\/span><\/p>\n<p>Now it will test the database connectivity through JDBC.<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring76.png\" \/><\/p>\n<p>Once successful, click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring77.png\" \/><\/p>\n<p>Select &#8220;Managed Servers, Clusters and Machines&#8221; only and click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring78.png\" \/><\/p>\n<p>The first row was from previous configuration of ODS and now there will be another row for OAM. Keep the default port and make a note of it. Enter <strong>wls_oam1<\/strong> for the instance name (or whichever you chose while creating instance) and click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring79.png\" \/><\/p>\n<p>Just click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring80.png\" \/><\/p>\n<p>On the &#8220;<strong>Machines<\/strong>&#8221; tab make sure that correct hostname is entered. Click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring81.png\" \/><\/p>\n<p>Select\u00a0<strong>wls_oam1<\/strong>\u00a0and click the right arrow.<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring82.png\" \/><\/p>\n<p>Now it should look as above. Click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring83.png\" \/><\/p>\n<p>On the summary page Click\u00a0<strong>Extend<\/strong>.<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring84.png\" \/><\/p>\n<p>Click\u00a0<strong>OK<\/strong>\u00a0Since we are aware that these are correct ports being used by <strong>AdminServer<\/strong> and <strong>wls_ods1<\/strong> instance.<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring85.png\" \/><\/p>\n<p>Once configuration finishes, click\u00a0<strong>Done<\/strong>.<\/p>\n<p><span style=\"text-decoration: underline;\"><strong>Restart Weblogic admin server. Do not start managed server wls_oam1 yet.<br \/>\n<\/strong><\/span><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #333333;\">You can start the managed server by using following command.<\/span><\/p>\n<p>[oracle@fusion bin]$\u00a0<strong>cd \/app\/fusion\/admin\/IDMDomain\/aserver\/IDMDomain\/bin\/<\/strong><\/p>\n<p>[oracle@fusion bin]$ <strong>.\/startManagedWebLogic.sh wls_oam1<\/strong><\/p>\n<p><span style=\"color: #333333;\">This will create the directory<\/span><span style=\"font-size: 13pt;\"><br \/>\n<\/span><span style=\"color: #333333;\"><strong>\/app\/fusion\/admin\/IDMDomain\/aserver\/IDMDomain\/servers\/wls_oam1<\/strong><br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333;\">Press CTRL+C to stop the process since we will need to configure startup without password prompt.<\/span><\/p>\n<blockquote><p>[oracle@fusion wls_oam1]$\u00a0<strong>cd \/app\/fusion\/admin\/IDMDomain\/aserver\/IDMDomain\/servers\/wls_oam1<\/strong><\/p>\n<p>[oracle@fusion wls_oam1]$\u00a0<strong>cp ..\/wls_ods1\/security\/ boot.properties .<\/strong><\/p><\/blockquote>\n<p><span style=\"color: #333333;\">Now we can start the managed server without prompting for password.<\/span><\/p>\n<blockquote><p>[oracle@fusion bin]$\u00a0<strong>cd \/app\/fusion\/admin\/IDMDomain\/aserver\/IDMDomain\/bin\/<\/strong><\/p>\n<p>[oracle@fusion bin]$\u00a0<strong>nohup .\/startManagedWebLogic.sh wls_oam1 &amp;<\/strong><\/p><\/blockquote>\n<p><span style=\"color: #632423; font-size: 13pt;\"><strong>Remove IDM Domain Agent<\/strong><br \/>\n<\/span><\/p>\n<p>Open Admin Server console at <a href=\"http:\/\/fusion:7777\/console\">http:\/\/fusion:7777\/console<\/a> and login with user <strong>weblogic<\/strong><\/p>\n<p>Click Lock &amp; Edit<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring86.png\" \/><\/p>\n<p>Go to Console-&gt;Environment -&gt; Security Realms -&gt; myrealm -&gt; providers -&gt; Select <strong>IAMSuiteAgent<\/strong> and <strong>delete<\/strong> it.<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring87.png\" \/><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"text-decoration: underline;\"><strong>Restart Weblogic and all managed servers including wls_oam1<br \/>\n<\/strong><\/span><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423; font-size: 13pt;\"><strong>Configuring Oracle HTTP Servers to Display Login Page and Oracle Access Manager Console<\/strong><\/span><span style=\"color: #333333; font-size: 9pt;\"><br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333;\"><strong>Append<\/strong>\u00a0following entries in <strong>\/app\/fusion\/admin\/ohs_inst1\/config\/OHS\/ohs1\/moduleconf\/admin.conf<\/strong><br \/>\n<\/span><\/p>\n<blockquote><p><span style=\"color: red;\"> &lt;Location \/oam&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: red;\"> SetHandler weblogic-handler<br \/>\n<\/span><\/p>\n<p><span style=\"color: red;\"> WebLogicHost fusion<br \/>\n<\/span><\/p>\n<p><span style=\"color: red;\"> WebLogicPort 14100<br \/>\n<\/span><\/p>\n<p><span style=\"color: red;\"> &lt;\/Location&gt;<br \/>\n<\/span><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: red;\">&lt;Location \/fusion_apps&gt;<\/span><\/p>\n<p><span style=\"color: red;\"> SetHandler weblogic-handler<br \/>\n<\/span><\/p>\n<p><span style=\"color: red;\"> WebLogicHost fusion<br \/>\n<\/span><\/p>\n<p><span style=\"color: red;\"> WebLogicPort 14100<br \/>\n<\/span><\/p>\n<p><span style=\"color: red;\"> &lt;\/Location&gt;<br \/>\n<\/span><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: red;\"> &lt;Location \/oamconsole&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: red;\"> SetHandler weblogic-handler<br \/>\n<\/span><\/p>\n<p><span style=\"color: red;\"> WebLogicHost fusion<br \/>\n<\/span><\/p>\n<p><span style=\"color: red;\"> WebLogicPort 7001<br \/>\n<\/span><\/p>\n<p><span style=\"color: red;\"> &lt;\/Location&gt;<br \/>\n<\/span><\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><span style=\"text-decoration: underline;\"><strong style=\"color: #333333; text-decoration: underline;\">Restart HTTP Server<\/strong><span style=\"color: #333333; text-decoration: underline;\">\u00a0to bring this to effect.<\/span>\u00a0<\/span><\/p>\n<p>Check <a href=\"http:\/\/fusion:7777\/oamconsole\"><span style=\"color: blue; text-decoration: underline;\">http:\/\/fusion:7777\/oamconsole<\/span><\/a> to validate the same.<\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423; font-size: 12pt;\"><strong>Configure OAM<\/strong><br \/>\n<\/span><\/p>\n<blockquote><p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>cd \/app\/fusion\/fmw\/iam\/idmtools\/bin<\/strong><\/span><\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>more config_oam1.props<\/strong><\/span><\/p>\n<p>WLSHOST: fusion<\/p>\n<p>WLSPORT: 7001<\/p>\n<p>WLSADMIN: weblogic<\/p>\n<p>IDSTORE_HOST: fusion<\/p>\n<p>IDSTORE_PORT: 3060<\/p>\n<p>IDSTORE_BINDDN: cn=orcladmin<\/p>\n<p>IDSTORE_USERNAMEATTRIBUTE: cn<\/p>\n<p>IDSTORE_LOGINATTRIBUTE: uid<\/p>\n<p>IDSTORE_USERSEARCHBASE: cn=Users,dc=localdomain<\/p>\n<p>IDSTORE_SEARCHBASE: dc=localdomain<\/p>\n<p>IDSTORE_GROUPSEARCHBASE: cn=Groups,dc=localdomain<\/p>\n<p>IDSTORE_OAMSOFTWAREUSER: oamLDAP<\/p>\n<p>IDSTORE_OAMADMINUSER: oamadmin<\/p>\n<p>PRIMARY_OAM_SERVERS: fusion:5575<\/p>\n<p>WEBGATE_TYPE: ohsWebgate10g<\/p>\n<p>ACCESS_GATE_ID: Webgate_IDM<\/p>\n<p>OAM11G_IDM_DOMAIN_OHS_HOST:fusion<\/p>\n<p>OAM11G_IDM_DOMAIN_OHS_PORT:7777<\/p>\n<p>OAM11G_IDM_DOMAIN_OHS_PROTOCOL:http<\/p>\n<p>OAM11G_OAM_SERVER_TRANSFER_MODE:open<\/p>\n<p>OAM11G_IDM_DOMAIN_LOGOUT_URLS:\/console\/jsp\/common\/logout.jsp,\/em\/targetauth\/emaslogout.jsp<\/p>\n<p>OAM11G_WG_DENY_ON_NOT_PROTECTED: false<\/p>\n<p>OAM11G_SERVER_LOGIN_ATTRIBUTE: uid<\/p>\n<p>OAM_TRANSFER_MODE: open<\/p>\n<p>COOKIE_DOMAIN: .localdomain<\/p>\n<p>OAM11G_IDSTORE_ROLE_SECURITY_ADMIN: OAMAdministrators<\/p>\n<p>OAM11G_SSO_ONLY_FLAG: true<\/p>\n<p>OAM11G_OIM_INTEGRATION_REQ: false<\/p>\n<p>OAM11G_IMPERSONATION_FLAG:true<\/p>\n<p>OAM11G_SERVER_LBR_HOST:fusion<\/p>\n<p>OAM11G_SERVER_LBR_PORT:7777<\/p>\n<p>OAM11G_SERVER_LBR_PROTOCOL:http<\/p>\n<p>OAM11G_OIM_WEBGATE_PASSWD: Oracle123<\/p>\n<p>COOKIE_EXPIRY_INTERVAL: 120<\/p>\n<p>&nbsp;<\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>.\/idmConfigTool.sh -configOAM input_file=config_oam1.props<\/strong><\/span><\/p>\n<p>Enter ID Store Bind DN password :<\/p>\n<p>Enter User Password for WLSPASSWD:<\/p>\n<p>Confirm User Password for WLSPASSWD:<\/p>\n<p>Enter User Password for OAM11G_IDM_DOMAIN_WEBGATE_PASSWD:<\/p>\n<p>Confirm User Password for OAM11G_IDM_DOMAIN_WEBGATE_PASSWD:<\/p>\n<p>The passwords do not match. Please re-enter.<\/p>\n<p>Enter User Password for OAM11G_IDM_DOMAIN_WEBGATE_PASSWD:<\/p>\n<p>Confirm User Password for OAM11G_IDM_DOMAIN_WEBGATE_PASSWD:<\/p>\n<p>Enter User Password for IDSTORE_PWD_OAMSOFTWAREUSER:<\/p>\n<p>Confirm User Password for IDSTORE_PWD_OAMSOFTWAREUSER:<\/p>\n<p>Enter User Password for IDSTORE_PWD_OAMADMINUSER:<\/p>\n<p>Confirm User Password for IDSTORE_PWD_OAMADMINUSER:<\/p>\n<p>\u2026<\/p>\n<p>The tool has completed its operation. Details have been logged to automation.log<\/p><\/blockquote>\n<p><span style=\"text-decoration: underline;\"><strong>Restart Admin server.<br \/>\n<\/strong><\/span><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423; font-size: 12pt;\"><strong>Validating the Configuration<br \/>\n<\/strong><\/span><\/p>\n<p>Login with oamadmin at <a href=\"http:\/\/fusion:7777\/oamconsole\"><span style=\"color: blue; text-decoration: underline;\">http:\/\/fusion:7777\/oamconsole<\/span><\/a><\/p>\n<p>oamadmin\/Oracle123<\/p>\n<p><strong>System Configuration -&gt; Access Manager Settings -&gt; SSO Agents -&gt; Double click on OAM Agents<\/strong><\/p>\n<p>click <strong>Search<\/strong><\/p>\n<p><strong>Webgate_IDM<\/strong> should be displayed here<\/p>\n<p><strong>Updating Newly-Created Agent<\/strong><\/p>\n<p>Click the Agent <strong>Webgate_IDM<\/strong>.<\/p>\n<p>Select <strong>Open<\/strong> from the Actions menu.<\/p>\n<p>Update the following information:<\/p>\n<blockquote><p><strong> Deny if not Protected: Deselect.<br \/>\n<\/strong><\/p>\n<p><strong>Set Max Connections to 4<\/strong> for all of the Oracle Access Manager servers listed in the primary servers list.<\/p>\n<p>Click <strong>Apply<\/strong>.<\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p>Click <strong>Policy Configuration tab<\/strong>.<\/p>\n<p>Double Click <strong>IAMSuiteAgent<\/strong> under<strong> Host Identifiers<\/strong>.<\/p>\n<p>Click <strong>+<\/strong> in the operations box.<\/p>\n<p>Enter the following information:<\/p>\n<blockquote><p>Host Name: fusion<\/p>\n<p>Port: 7777<\/p>\n<p>Click Apply.<\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423; font-size: 12pt;\"><strong>Changing the Login Attribute<br \/>\n<\/strong><\/span><\/p>\n<p><strong>Note: <\/strong>If you have applied the previous patches then following will be already set.<\/p>\n<p>Log in to the oamconsole at:<\/p>\n<p><a href=\"http:\/\/fusion:7777\/oamconsole\"><span style=\"color: blue; text-decoration: underline;\">http:\/\/fusion:7777\/oamconsole<\/span><\/a><\/p>\n<p><strong>2. <\/strong>Click the <strong>System Configuration <\/strong>tab.<\/p>\n<p><strong>3. <\/strong>Expand <strong>Data Sources <\/strong>&#8211; <strong>User Identity Stores<\/strong>.<\/p>\n<p><strong>4. <\/strong>Click <strong>OIMIDStore<\/strong>.<\/p>\n<p><strong>5. <\/strong>Click <strong>Open<\/strong>.<\/p>\n<p>Adding the oamadmin Account to Access System Administrators<\/p>\n<p><strong>12-16 <\/strong>Product Title\/BookTitle as a Variable<\/p>\n<p><strong>6. <\/strong>Change <strong>Username <\/strong>attribute to uid.<\/p>\n<p><strong>7. <\/strong>Click <strong>Apply<\/strong>.<\/p>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring88.png\" \/><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"text-decoration: underline;\"><strong>Restart the managed server wls_oam1<br \/>\n<\/strong><\/span><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423; font-size: 12pt;\"><strong>Add oamadmin as administrator<br \/>\n<\/strong><\/span><\/p>\n<p><strong>1. <\/strong>Log in to the oamconsole at:<\/p>\n<p><a href=\"http:\/\/fusion:7777\/oamconsole\"><span style=\"color: blue; text-decoration: underline;\">http:\/\/fusion:7777\/oamconsole<\/span><\/a><\/p>\n<p><strong>2. <\/strong>Click the <strong>System Configuration <\/strong>tab.<\/p>\n<p><strong>3. <\/strong>Expand <strong>Data Sources <\/strong>&#8211; <strong>User Identity Stores<\/strong>.<\/p>\n<p><strong>4. <\/strong>Click <strong>OIMIDStore<\/strong>.<\/p>\n<p><strong>5. <\/strong>Click <strong>Open<\/strong>.<\/p>\n<p><strong>6. <\/strong>Click the <strong>+ <\/strong>symbol next to <strong>Access System Adminsitrators<\/strong>.<\/p>\n<p><strong>7. <\/strong>Type oamadmin in the search box and click <strong>Search<\/strong>.<\/p>\n<p><strong>8. <\/strong>Click the returned <strong>oamadmin <\/strong>row, then click <strong>Add Selected<\/strong>.<\/p>\n<p><strong>9. <\/strong>Click <strong>Apply<\/strong>.<\/p>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring89.png\" \/><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423; font-size: 12pt;\"><strong>Validate OAM<\/strong><br \/>\n<\/span><\/p>\n<blockquote><p>[oracle@fusion tester]$ <span style=\"color: red;\"><strong>export JAVA_HOME=\/app\/fusion\/jdk6<\/strong><\/span><\/p>\n<p>[oracle@fusion tester]$ <span style=\"color: red;\"><strong>cd \/app\/fusion\/fmw\/iam\/oam\/server\/tester<\/strong><\/span><\/p>\n<p>[oracle@fusion tester]$ <span style=\"color: red;\"><strong>java -jar oamtest.jar<\/strong><\/span><\/p><\/blockquote>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring90.png\" \/><\/p>\n<p>Enter following details click <strong>Connect<br \/>\n<\/strong><\/p>\n<blockquote><p>IP address: <strong>fusion<br \/>\n<\/strong><\/p>\n<p>Port: <strong>5575<\/strong><\/p>\n<p>Agent ID: <strong>Webgate_IDM<\/strong><\/p>\n<p>Agent Password: <strong>Oracle123<\/strong><\/p><\/blockquote>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring91.png\" \/><\/p>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring92.png\" \/><\/p>\n<p>Enter following details in URI section and click <strong>Validate<\/strong>.<\/p>\n<blockquote><p>Scheme: http<\/p>\n<p>Host: fusion<\/p>\n<p>Port: <strong>7777<br \/>\n<\/strong><\/p>\n<p>Resource:<strong> \/oamconsole<br \/>\n<\/strong><\/p>\n<p>Operation: <strong>Get<\/strong><\/p><\/blockquote>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring93.png\" \/><\/p>\n<p>Enter following details and click Authorize.<\/p>\n<blockquote><p>IP address: <strong>IP<\/strong> for the host fusion (for our case 192.168.56.101 or fusion)<\/p>\n<p>Username: <strong>oamadmin<\/strong><\/p>\n<p>Password: <strong>Oracle123<\/strong><\/p><\/blockquote>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring94.png\" \/><\/p>\n<p>Click <strong>Authorize<\/strong>. It should succeed. This concludes OAM test.<\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423; font-size: 12pt;\"><strong>Update the Configuration File oam-config.xml<\/strong><\/span><\/p>\n<p>Edit <strong><span style=\"color: red;\">\/app\/fusion\/admin\/IDMDomain\/aserver\/IDMDomain\/config\/fmwconfig\/oam-config.xml<\/span><br \/>\n<\/strong>as per post step for patch <span style=\"color: red;\"><strong>12989739<\/strong><\/span><\/p>\n<blockquote><p>&lt;Setting Name=&#8221;NoUniqueSessionsFor10gAgents&#8221; Type=&#8221;xsd:boolean&#8221;&gt;<strong>true<\/strong>&lt;\/Setting&gt;<\/p>\n<p>&#8230;<\/p>\n<p>&lt;Setting Name=&#8221;SessionConfigurations&#8221; Type=&#8221;htf:map&#8221;&gt;<\/p>\n<p>&lt;Setting Name=&#8221;Timeout&#8221; Type=&#8221;htf:timeInterval&#8221;&gt;<strong>120M<\/strong>&lt;\/Setting&gt;<\/p>\n<p>&lt;Setting Name=&#8221;Expiry&#8221; Type=&#8221;htf:timeInterval&#8221;&gt;<strong>120M<\/strong>&lt;\/Setting&gt;<\/p>\n<p>&lt;Setting Name=&#8221;MaxSessionsPerUser&#8221; Type=&#8221;xsd:integer&#8221;&gt;<strong>400<\/strong>&lt;\/Setting&gt;<\/p>\n<p>&lt;\/Setting&gt;<\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423; font-size: 14pt; text-decoration: underline;\"><strong>Extending the Domain to Configure Oracle Identity Manager and Oracle SOA Suite<\/strong><\/span><span style=\"color: #333333; font-size: 8pt;\"><br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333; font-size: 9pt;\">Start the configuration from\u00a0<\/span><strong style=\"color: #333333; font-size: 9pt;\">&lt;Middleware Home\/oracle_common\/common\/bin<\/strong><\/p>\n<blockquote><p>[oracle@fusion fmwconfig]$ <span style=\"color: red;\"><strong>cd \/app\/fusion\/fmw\/oracle_common\/common\/bin\/<\/strong><\/span><\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>.\/config.sh &amp;<\/strong><\/span><\/p><\/blockquote>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring95.png\" \/><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring96.png\" \/><\/p>\n<p>Select &#8220;<strong>Extend an existing WebLogic domain<\/strong>&#8221; and click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring97.png\" \/><\/p>\n<p>Scroll down and select\u00a0<strong>admin-&gt;IDMDomain-&gt;aseever -&gt; IDMDomain<\/strong>\u00a0and click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring98.png\" \/><\/p>\n<p>Select\u00a0<strong>Oracle Identity Manager<\/strong>. It will automatically select\u00a0<strong>Oracle SOA Suite<\/strong>\u00a0and\u00a0<strong>Oracle WSM<\/strong>. Click <strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring99.png\" \/><\/p>\n<p>Check all to modify all entries together. Provide database connect details and password <strong>Oracle123<\/strong> for all. Accept default value for Schema owner names. Click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring100.png\" \/><\/p>\n<p>Now it will test the database connectivity through JDBC. Once JDBC test is successful, click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring101.png\" \/><\/p>\n<p>Select only &#8220;<strong>Managed Servers, Clusters and Machines<\/strong>&#8221; and click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring102.png\" \/><\/p>\n<p>Add entries for\u00a0<strong>wls_soa1<\/strong>\u00a0and\u00a0<strong>wls_oim1<\/strong>. Note the ports and click\u00a0<strong>Next.<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring103.png\" \/><\/p>\n<p>Click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring104.png\" \/><\/p>\n<p>Since we are using Linux\/Unix machine,\u00a0<strong>delete<\/strong>\u00a0entry from above screen.<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring105.png\" \/><\/p>\n<p>After Delete it should look as above. Click on<strong> Unix Machines <\/strong>tab<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring106.png\" \/><\/p>\n<p>Make sure correct hostname is entered here. Click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring107.png\" \/><\/p>\n<p>Select\u00a0<strong>wls_oim1<\/strong>\u00a0and<strong>wls_soa1<\/strong>\u00a0and click right arrow.<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring108.png\" \/><\/p>\n<p>The screen will now look like above. Click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring109.png\" \/><\/p>\n<p>On Summary screen click\u00a0<strong>Entend<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring110.png\" \/><\/p>\n<p>Click<strong>\u00a0OK<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring111.png\" \/><\/p>\n<p>Once configuration finishes, click\u00a0<strong>Done<\/strong><\/p>\n<p><strong>Restart Weblogic Admin Server. Do not start OIM\/SOA yet.<\/strong><\/p>\n<p><strong>Note:<\/strong> Just in case if your database has case sensitive login enabled, make sure to disable it as follows. (default enabled in 11g)<\/p>\n<blockquote><p>SQL&gt; <span style=\"color: red;\"><strong>alter system set sec_case_sensitive_logon=FALSE;<\/strong><\/span><\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423; font-size: 14pt;\"><strong>Configuring Oracle Identity Manager<\/strong><\/span><span style=\"color: #333333; font-size: 9pt;\"><br \/>\n<\/span><\/p>\n<p><span style=\"color: #333333; font-size: 9pt;\">Now we will configure the Identity Manager from<strong>\u00a0&lt;IAM Oracle Home&gt;\/bin<\/strong><\/span><\/p>\n<p>Before proceeding, ensure that the following are true:<\/p>\n<p>1. The Administration Server is up and running.<\/p>\n<p>2. The environment variables DOMAIN_HOME and WL_HOME are <strong><em>not <\/em><\/strong>set in the current shell.<\/p>\n<blockquote><p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>cd \/app\/fusion\/fmw\/iam\/bin<br \/>\n<\/strong><\/span><\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>.\/config.sh &amp;<\/strong><\/span><\/p><\/blockquote>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring112.png\" \/><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring113.png\" \/><\/p>\n<p>Click<strong>\u00a0Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring114.png\" \/><\/p>\n<p>Select only OIM Server and click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring115.png\" \/><\/p>\n<p>Enter database details in shown format &#8220;<strong>fusion:1521:fusiondb<\/strong>&#8220;. Select Schema names (keep default) and enter password (oracle123). Make sure to keep a note of these schema names\u00a0<strong>DEV_OIM<\/strong>\u00a0and <strong>DEV_MDS<\/strong>. We will need these later during provisioning plan. Click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring116.png\" \/><\/p>\n<p>Enter AdminServer details in\u00a0<strong>t3:\/\/&lt;hostname&gt;:&lt;port&gt;\u00a0<\/strong>format. Here<strong>\u00a0t3:\/\/fusion:7001<\/strong><\/p>\n<blockquote><p><strong>Important Note:\u00a0<\/strong>Before clicking next make sure that AdminServer is running otherwise it may throw following error on next page. Start or restart AdminServer if you see this error.<\/p>\n<p>INST-6180: Error while retrieving OIM Managed Server URL from the domain.<\/p><\/blockquote>\n<p>Click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring117.png\" \/><\/p>\n<p>Enter passwords as follows and keep a note of them since we will require them in provisioning wizard.<\/p>\n<p>OIM Admin password: Oracle123<\/p>\n<p>Keystore Password: Oracle123<\/p>\n<p>Enter OIM HTTP URL as\u00a0<a href=\"http:\/\/fusion:14000\/\"><span style=\"text-decoration: underline;\">http:\/\/fusion:14000<\/span><\/a>\u00a0(based on port value in previous configuration step). Click <strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring118.png\" \/><\/p>\n<p>Deselect Configure BI Publisher and <strong>select Enable LDAP Sync. <\/strong>Click<strong> Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring119.png\" \/><\/p>\n<p>Enter details as follows and click <strong>Next<\/strong><\/p>\n<p>Directory type: <strong>OID<\/strong><\/p>\n<p>ID: <strong>oid1<\/strong><\/p>\n<p>URL: <strong>ldap:\/\/fusion:3060<br \/>\n<\/strong><\/p>\n<p>Server User: <strong>cn=oimLDAP,cn=systemids,dc=localdomain<br \/>\n<\/strong><\/p>\n<p>Server Password: Oracle123<\/p>\n<p>Server SearchDN: <strong>dc=localdomain<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring120.png\" \/><\/p>\n<p>Enter details as follows and click <strong>Next<\/strong>.<\/p>\n<blockquote><p>Role Container: <strong>cn=Groups,dc=localdomain<br \/>\n<\/strong><\/p>\n<p>User container: <strong>cn=Users,dc=localdomain<\/strong><\/p>\n<p>Reservation container: <strong>cn=Reserve,dc=localdomain<\/strong><\/p><\/blockquote>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring121.png\" \/><\/p>\n<p>Save the summary if required and click\u00a0<strong>Configure.<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring122.png\" \/><\/p>\n<p>Once configuration finishes click\u00a0<strong>Next<\/strong><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring123.png\" \/><\/p>\n<p>Save the configuration summary if needed and click\u00a0<strong>Finish<\/strong>\u00a0to complete the configuration.<\/p>\n<p><span style=\"text-decoration: underline;\"><strong>Start wls_oim1 and wls_soa1 managed servers.<br \/>\n<\/strong><\/span><\/p>\n<p>&nbsp;<\/p>\n<p><strong>copy boot.properties<\/strong><\/p>\n<blockquote><p>[oracle@fusion bin]$ cd \/app\/fusion\/admin\/IDMDomain\/aserver\/IDMDomain\/servers\/<\/p>\n<p>[oracle@fusion servers]$ cp -p AdminServer\/security\/boot.properties wls_oim1\/security\/<\/p>\n<p>[oracle@fusion servers]$ cp -p AdminServer\/security\/boot.properties wls_soa1\/security\/<\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><strong>Validate OIM<\/strong> by launching <a href=\"http:\/\/fusion:14000\/oim\"><span style=\"color: blue; text-decoration: underline;\">http:\/\/fusion:14000\/oim<\/span><\/a><\/p>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring124.png\" \/><\/p>\n<p>Now login with xelsysadm\/Oralce123<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring125.png\" \/><\/p>\n<p>Now <strong>validate SOA<\/strong> by launching <a href=\"http:\/\/fusion:8001\/soa-infra\"><span style=\"color: blue; text-decoration: underline;\">http:\/\/fusion:8001\/soa-infra<\/span><\/a> and login with weblogic\/Oracle123<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring126.png\" \/><\/p>\n<p><strong>Apply patch 12790893. This is required patch for following steps to succeed.<br \/>\n<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p>Post steps for patch <strong>12790893<\/strong><\/p>\n<p><strong>Post Step-1<\/strong><\/p>\n<p>Edit weblogic.profile file<\/p>\n<blockquote><p>[oracle@fusion bin]$ <strong>cd \/app\/fusion\/fmw\/iam\/server\/bin<br \/>\n<\/strong><\/p>\n<p>[oracle@fusion bin]$ <strong>cat weblogic.profile<\/strong><\/p>\n<p># Please fill the information below before running the post-patch script.<\/p>\n<p># Put the OIM DB schema owner name here<\/p>\n<p>operationsDB.user=DEV_OIM<\/p>\n<p># Put the DB driver to be used<\/p>\n<p>operationsDB.driver=oracle.jdbc.xa.client.OracleXADataSource<\/p>\n<p># Put the absolute path to the Weblogic server directory here.<\/p>\n<p>weblogic.server.dir=\/app\/fusion\/fmw\/wlserver_10.3<\/p>\n<p># The host on which OIM db is running<\/p>\n<p>operationsDB.host=fusion<\/p>\n<p># The service name of the OIM db [Do not mention the SID here.]<\/p>\n<p>operationsDB.serviceName=fusiondb<\/p>\n<p># The port of the OIM db<\/p>\n<p>operationsDB.port=1521<\/p>\n<p># Application server<\/p>\n<p>appserver.type=wls<\/p>\n<p>&nbsp;<\/p>\n<p>[oracle@fusion bin]$<strong> export JAVA_HOME=\/app\/fusion\/jdk6<br \/>\n<\/strong><\/p>\n<p>[oracle@fusion bin]$ <strong>export WL_HOME=\/app\/fusion\/fmw\/wlserver_10.3<br \/>\n<\/strong><\/p>\n<p>[oracle@fusion bin]$<strong> export OIM_ORACLE_HOME=\/app\/fusion\/fmw\/iam<\/strong><\/p>\n<p>[oracle@fusion bin]$ <strong>export ANT_HOME=\/app\/fusion\/fmw\/modules\/org.apache.ant_1.7.1<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p>[oracle@fusion bin]$ <span style=\"color: red;\"><strong>.\/patch_weblogic.sh Oracle123<\/strong><\/span><\/p>\n<p>Buildfile: \/app\/fusion\/fmw\/iam\/server\/setup\/deploy-files\/setup.xml<\/p>\n<p>[input]Enter the oim db password:<\/p>\n<p>Buildfile: \/app\/fusion\/fmw\/iam\/server\/setup\/deploy-files\/setup.xml<\/p>\n<p>&nbsp;<\/p><\/blockquote>\n<p><strong>Post Step-2<\/strong><\/p>\n<blockquote><p>[oracle@fusion bin]$ <strong>mkdir $ORACLE_HOME\/temp\/log<\/strong><\/p>\n<p>[oracle@fusion bin]$ <strong>cp -p ~\/patches\/12790893\/files\/temp\/RequestTemplateManagementPolicies.xml \/app\/fusion\/fmw\/iam\/temp\/<\/strong><\/p>\n<p>[oracle@fusion bin]$ <strong>cd $OIM_ORACLE_HOME\/server\/setup\/deploy-files<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p>[oracle@fusion deploy-files]$ <strong>\/app\/fusion\/fmw\/modules\/org.apache.ant_1.7.1\/bin\/ant -f setup.xml \\<\/strong><\/p>\n<p><strong>upgrade-oes-ootb-policies -DoperationsDB.user=DEV_OIM -DOIM.DBPassword=Oracle123 \\<\/strong><\/p>\n<p><strong>-DoperationsDB.driver=oracle.jdbc.xa.client.OracleXADataSource -DoperationsDB.host=fusion \\<\/strong><\/p>\n<p><strong>-DoperationsDB.port=1521 -DoperationsDB.SID=fusiondb -Dpolicy.dir=\/app\/fusion\/fmw\/iam\/temp \\<\/strong><\/p>\n<p><strong>-Dupdate.flag=true -Dweblogic.server.dir=\/app\/fusion\/fmw\/wlserver_10.3<\/strong><\/p>\n<p>Buildfile: setup.xml<\/p>\n<p>upgrade-oes-ootb-policies:<\/p>\n<p>upgrade-oes-ootb-policies:<\/p>\n<p>[echo] &#8212;-&gt; UPDATING OUT OF THE BOX OES POLICIES<\/p>\n<p>[java] [EL Info]: 2012-03-19 09:13:59.734&#8211;ServerSession(140283754)&#8211;EclipseLink, version: Eclipse Persistence Services &#8211; 1.1.0.r3634<\/p>\n<p>[java] [EL Info]: 2012-03-19 09:14:06.151&#8211;ServerSession(140283754)&#8211;file:\/app\/fusion\/fmw\/iam\/modules\/oracle.oes_11.1.1\/jps-internal.jar-JpsDBDataManager login successful<\/p>\n<p>[echo] &#8212;-&gt; SEEDING COMPLETE LOG FILE<\/p>\n<p>[echo] &#8212;-&gt; LOG FILE : \/app\/fusion\/fmw\/iam\/temp\/log<\/p>\n<p>BUILD SUCCESSFUL<\/p>\n<p>Total time: 52 seconds<\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><strong>Post Step-3<\/strong><\/p>\n<blockquote><p><strong>cd PATCH_TOP\/12790893\/files\/server\/db\/oim\/oracle\/<br \/>\n<\/strong><\/p>\n<p>Connect to the db as OIM_db_user<\/p>\n<p>SQL&gt;<strong> @Upgrade\/oim11gps1_dml_insert_pty_FAAdministratorsRole.sql<br \/>\n<\/strong><\/p>\n<p>SQL&gt;<strong> @Upgrade\/oim11gps1_dml_insert_pty_cookie-http-only-flag-turned-on.sql<br \/>\n<\/strong><\/p>\n<p>SQL&gt;<strong> @Upgrade\/oim11gps1_dml_update_AllowDisabledManagers.sql<br \/>\n<\/strong><\/p>\n<p>SQL&gt;<strong> @Upgrade\/oim11gps1_dml_create_UMS_ITRes_def_instance.sql<br \/>\n<\/strong><\/p>\n<p>SQL&gt;<strong> @StoredProcedures\/API\/oim_usr_mgmt_pkg_body.sql<br \/>\n<\/strong><\/p>\n<p>SQL&gt;<strong> @StoredProcedures\/Recon\/OIM_SP_ReconBlkRoleCRU.sql<br \/>\n<\/strong><\/p>\n<p>SQL&gt;<strong> @StoredProcedures\/Recon\/XL_SP_ReconBlkChildMthAcntCRUD.sql<br \/>\n<\/strong><\/p>\n<p>SQL&gt;<strong> @StoredProcedures\/Recon\/XL_SP_ReconBlkRoleMemValMatch.sql<br \/>\n<\/strong><\/p>\n<p>SQL&gt;<strong> @StoredProcedures\/Recon\/XL_SP_ReconRoleMemValMatch.sql<br \/>\n<\/strong><\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><strong>Post-step 4<\/strong>:<\/p>\n<p>Deploy OAACGRoleAssignSODCheck composite with a deployment plan to SOA server.<\/p>\n<p>a) Login to EM and select\/click on OAACGRoleAssignSODCheck [1.0] composite on the home page<\/p>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring127.png\" \/><\/p>\n<p>b) From top menu, select SOA Composite-&gt;SOA Deployment-&gt;Undeploy and then click on Undeploy in step2<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring128.png\" \/><\/p>\n<p><strong>Note:<\/strong> If it waits forever, just close the window and proceed to next step.<\/p>\n<p>c) Unzip OAACGRoleAssignSODCheck.zip in &lt;OIM_ORACLE_HOME&gt;\/server\/workflows\/composites to a temporary location, lets say \/tmp<\/p>\n<blockquote><p>[oracle@fusion tmp]$ cd \/tmp<\/p>\n<p>[oracle@fusion tmp]$ unzip \/app\/fusion\/fmw\/iam\/server\/workflows\/composites\/OAACGRoleAssignSODCheck.zip OAACGRoleAssignSODCheck\/deploy\/sca_OAACGRoleAssignSODCheck_rev1.0.jar<\/p>\n<p>Archive: \/app\/fusion\/fmw\/iam\/server\/workflows\/composites\/OAACGRoleAssignSODCheck.zip<\/p>\n<p>inflating: OAACGRoleAssignSODCheck\/deploy\/sca_OAACGRoleAssignSODCheck_rev1.0.jar<\/p><\/blockquote>\n<p>c) Get sca_OAACGRoleAssignSODCheck_rev1.0.jar from \/tmp\/OAACGRoleAssignSODCheck\/deploy folder<\/p>\n<p>d) Open the jar file and extract soaconfigplan.xml file<\/p>\n<p>e) Open the soaconfigplan.xml file and replace the following @oimT3URL, (oimServerHost,)oimServerPort with appropriate values<\/p>\n<p>f) Put the updated soaconfigplan.xml back into sca_OAACGRoleAssignSODCheck_rev1.0.jar file and copy this jar to &lt;WLS_DOMAIN_HOME&gt;\/soa\/autodeploy<\/p>\n<p>folder<\/p>\n<p>g) Restart SOA server<\/p>\n<p>&nbsp;<\/p>\n<p><strong>Post-step 5<\/strong>: Start the OIM server<\/p>\n<p><strong>Post step 6<\/strong>: Use em to update OAACgConfig ResponseTimeoutvalue from 300 secs to 240<\/p>\n<p>a) Login to em as admin user<\/p>\n<p>b) select OIM server<\/p>\n<p>c) From the top pull down menu, select Weblogic Server&#8211;&gt;System Mbean Browser<\/p>\n<p>d) Go to Application Defined Mbeans and navigate oracle.iam-&gt;oim_server1&gt;oim&gt;XMLConfig&gt;Config-&gt;XMLConfig.OAACGConfig<\/p>\n<p>e) Select OAACGConfig and in the Attributes, change ResponseTimeoutvalue form 300 to 240<\/p>\n<p>&nbsp;<\/p>\n<p><strong>We skipped post steps 7, 8 and 9 for now since our aim at the moment is to complete fusion installation and show the look and feel.<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p><strong>Post-step 10<\/strong>: Steps to enable default TenantGUID value for callbacks payload:<\/p>\n<p>1. Login in OIM UI as xelsysadm user. Click on &#8216;Advanced&#8217; on the top right.<\/p>\n<p>2. Click on &#8216;System Management&#8217; tab available on the top.<\/p>\n<p>3. Click on &#8216;System Configuration&#8217; subtab.<\/p>\n<p>4. Click on Actions -&gt;Create a New OIM System Property.<\/p>\n<p>5. Provide Property Name: OIM.DefaultTenantGUID<\/p>\n<p>6. Provide Keyword: OIM.DefaultTenantGUID<\/p>\n<p>7. Provide Value: 1.<\/p>\n<p>8. Click Perform.<\/p>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring129.png\" \/><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring130.png\" \/><\/p>\n<p>&nbsp;<\/p>\n<p><strong>Post-step 11<\/strong>: Restart OIM Server<\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423; font-size: 12pt;\"><strong>Configuring Oracle Identity Manager to Reconcile from ID Store<\/strong><\/span><\/p>\n<blockquote><p>[oracle@fusion ldap_config_util]$ <span style=\"color: red;\"><strong>cd \/app\/fusion\/fmw\/iam\/server\/ldap_config_util<\/strong><\/span><\/p>\n<p>[oracle@fusion ldap_config_util]$ <span style=\"color: red;\"><strong>more ldapconfig.props<\/strong><\/span><\/p>\n<p># OIMServer Type, Valid values can be WLS, JBOSS, WAS<\/p>\n<p># e.g.: OIMServerType=WLS<\/p>\n<p>OIMServerType=WLS<\/p>\n<p># OIMAdmin User Login<\/p>\n<p># e.g.: OIMAdminUser=xelsysadm<\/p>\n<p>OIMAdminUser=xelsysadm<\/p>\n<p># Skip Validation of OVD Schema<\/p>\n<p># e.g.: SkipOVDValidation=true|false, Default false<\/p>\n<p>SkipOVDValidation=true<\/p>\n<p># OIM Provider URL<\/p>\n<p># e.g.: OIMProviderURL=t3:\/\/localhost:8003<\/p>\n<p>OIMProviderURL=t3:\/\/fusion:14000<\/p>\n<p># OID URL<\/p>\n<p># e.g.: OIDURL=ldap:\/\/localhost:389<\/p>\n<p>OIDURL=ldap:\/\/fusion:3060<\/p>\n<p># Admin user name to connect to OID<\/p>\n<p># e.g.: OIDAdminUsername=cn=orcladmin<\/p>\n<p>OIDAdminUsername=cn=orcladmin<\/p>\n<p># Search base<\/p>\n<p># e.g.: OIDSearchBase=dc=company,dc=com<\/p>\n<p>OIDSearchBase=dc=localdomain<\/p>\n<p># Name of the user container<\/p>\n<p># e.g.: UserContainerName=cn=Users<\/p>\n<p>UserContainerName=cn=Users<\/p>\n<p># Name of the role container<\/p>\n<p># e.g.: RoleContainerName=cn=Roles<\/p>\n<p>RoleContainerName=cn=Groups<\/p>\n<p># Name of the reservation container<\/p>\n<p># e.g.: ReservationContainerName=cn=Reserve<\/p>\n<p>ReservationContainerName=cn=Reserve<\/p>\n<p>&nbsp;<\/p>\n<p>[oracle@fusion ldap_config_util]$ <span style=\"color: red;\"><strong>.\/LDAPConfigPostSetup.sh<\/strong><\/span><\/p>\n<p>[Enter OID admin password:]<\/p>\n<p>[Enter OIM admin password:]<\/p>\n<p>Successfully Enabled Changelog based Reconciliation schedule jobs<strong><br \/>\n<\/strong><\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #333333; font-size: 12pt;\"><strong>Configuring Oracle HTTP Servers for Oracle Identity Manager and SOA<\/strong><\/span><\/p>\n<p><span style=\"color: #333333;\"><strong>Append<\/strong>\u00a0following entries in <strong>\/app\/fusion\/admin\/ohs_inst1\/config\/OHS\/ohs1\/moduleconf\/admin.conf<\/strong><\/span><\/p>\n<blockquote><p><span style=\"color: #000000;\"> # oim admin console(idmshell based)<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> &lt;Location \/admin&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> SetHandler weblogic-handler<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLProxySSL OFF<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLProxySSLPassThrough OFF<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLCookieName oimjsessionid<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WebLogicHost fusion<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WebLogicPort 14000<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLLogFile &#8220;${ORACLE_INSTANCE}\/diagnostics\/logs\/mod_wl\/oim_component.log&#8221;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> &lt;\/Location&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> # oim self and advanced admin webapp consoles(canonic webapp)<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> &lt;Location \/oim&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> SetHandler weblogic-handler<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLProxySSL OFF<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLProxySSLPassThrough OFF<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLCookieName oimjsessionid<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WebLogicHost fusion<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WebLogicPort 14000<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLLogFile &#8220;${ORACLE_INSTANCE}\/diagnostics\/logs\/mod_wl\/oim_component.log&#8221;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> &lt;\/Location&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> # SOA Callback webservice for SOD &#8211; Provide the SOA Managed Server Ports<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> &lt;Location \/sodcheck&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> SetHandler weblogic-handler<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLProxySSL OFF<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLProxySSLPassThrough OFF<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLCookieName oimjsessionid<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WebLogicHost fusion<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WebLogicPort 8001<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLLogFile &#8220;${ORACLE_INSTANCE}\/diagnostics\/logs\/mod_wl\/oim_component.log&#8221;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> &lt;\/Location&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> # Callback webservice for SOA. SOA calls this when a request is approved\/rejected<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> # Provide the SOA Managed Server Port<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> &lt;Location \/workflowservice&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> SetHandler weblogic-handler<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLProxySSL OFF<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLProxySSLPassThrough OFF<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLCookieName oimjsessionid<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WebLogicHost fusion<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WebLogicPort 14000<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLLogFile &#8220;${ORACLE_INSTANCE}\/diagnostics\/logs\/mod_wl\/oim_component.log&#8221;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> &lt;\/Location&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> # xlWebApp &#8211; Legacy 9.x webapp (struts based)<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> &lt;Location \/xlWebApp&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> SetHandler weblogic-handler<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLProxySSL OFF<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLProxySSLPassThrough OFF<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLCookieName oimjsessionid<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WebLogicHost fusion<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WebLogicPort 14000<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLLogFile &#8220;${ORACLE_INSTANCE}\/diagnostics\/logs\/mod_wl\/oim_component.log&#8221;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> &lt;\/Location&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> # Nexaweb WebApp &#8211; used for workflow designer and DM<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> &lt;Location \/Nexaweb&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> SetHandler weblogic-handler<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLProxySSL OFF<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLProxySSLPassThrough OFF<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLCookieName oimjsessionid<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WebLogicHost fusion<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WebLogicPort 14000<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLLogFile &#8220;${ORACLE_INSTANCE}\/diagnostics\/logs\/mod_wl\/oim_component.log&#8221;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> &lt;\/Location&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> # used for FA Callback service.<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> &lt;Location \/callbackResponseService&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> SetHandler weblogic-handler<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLProxySSL OFF<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLProxySSLPassThrough OFF<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLCookieName oimjsessionid<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WebLogicHost fusion<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WebLogicPort 14000<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLLogFile &#8220;${ORACLE_INSTANCE}\/diagnostics\/logs\/mod_wl\/oim_component.log&#8221;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> &lt;\/Location&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> # spml xsd profile<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> &lt;Location \/spml-xsd&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> SetHandler weblogic-handler<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLProxySSL OFF<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLProxySSLPassThrough OFF<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLCookieName oimjsessionid<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WebLogicHost fusion<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WebLogicPort 14000<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLLogFile &#8220;${ORACLE_INSTANCE}\/diagnostics\/logs\/mod_wl\/oim_component.log&#8221;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> &lt;\/Location&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> &lt;Location \/HTTPClnt&gt;<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> SetHandler weblogic-handler<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLProxySSL OFF<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLProxySSLPassThrough OFF<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLCookieName oimjsessionid<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WebLogicHost fusion<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WebLogicPort 14000<br \/>\n<\/span><\/p>\n<p><span style=\"color: #000000;\"> WLLogFile &#8220;${ORACLE_INSTANCE}\/diagnostics\/logs\/mod_wl\/oim_component.log&#8221;<br \/>\n<\/span><\/p>\n<p><span style=\"color: red;\"><span style=\"color: #000000;\"> &lt;\/Location&gt;<\/span><br \/>\n<\/span><\/p><\/blockquote>\n<p><strong style=\"color: #333333;\">Restart HTTP Server<\/strong><span style=\"color: #333333;\">\u00a0to bring this to effect.<\/span><\/p>\n<p>Validate <a href=\"http:\/\/fusion:7777\/oim\"><span style=\"color: blue; text-decoration: underline;\">http:\/\/fusion:7777\/oim<\/span><\/a> with xelsysadm user<\/p>\n<p>&nbsp;<\/p>\n<p>Now login to Weblogic Console at <a href=\"http:\/\/fusion:7777\/console\">http:\/\/fusion:7777\/console<\/a><\/p>\n<p>Click <strong>Lock and Edit<\/strong>. Select <strong>Servers-&gt;wls_soa1.<\/strong> In the <strong>protocols<\/strong> tab click on <strong>HTTP<\/strong> and change the following values. Now click on Activate changes.<\/p>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring131.png\" \/><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"text-decoration: underline;\"><strong>Restart managed server wls_soa1<br \/>\n<\/strong><\/span><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423;\"><strong><span style=\"font-size: 12pt;\">Enabling Oracle Identity Manager to Connect to SOA Using the Administrative Users Provisioned in LDAP<\/span><br \/>\n<\/strong><\/span><\/p>\n<p>Perform the following postinstallation steps to enable Oracle Identity Manager to work with the Oracle WebLogic Server administrator user provisioned in the central LDAP store. This enables Oracle Identity Manager to connect to SOA without any problem:<\/p>\n<p><span><strong>1. <\/strong>Log in to Enterprise Manager at: <\/span><span style=\"color: blue; text-decoration: underline;\">http:\/\/fusion:7777\/em<\/span><\/p>\n<p><strong>2. <\/strong>Right click <strong>Identity and Access <\/strong>\u2013<strong>OIM<\/strong>\u2013<strong>oim(11.1.1.3.0) <\/strong>and select <strong>System Mbean Browser<\/strong>.<\/p>\n<p><strong>3. <\/strong>Select <strong>Application<\/strong>&#8211;<strong>defined Mbeans <\/strong>\u2013&gt; <strong>oracle.iam<\/strong>\u2013<strong>Server: wls_oim1 <\/strong>\u2013&gt; <strong>Application:<\/strong><\/p>\n<p><span style=\"color: black;\"><strong>oim<\/strong>\u2013&gt; <strong>XML Config<\/strong>\u2013&gt; <strong>Config<\/strong>\u2013<strong>XMLConfig.SOAConfig <\/strong>\u2013&gt; <strong>SOAConfig<br \/>\n<\/strong><\/span><\/p>\n<p><strong>4. <\/strong>View the <strong>username <\/strong>attribute. By default, the value of this attribute is weblogic. Change this to the Oracle WebLogic Server administrator username <strong>weblogic_idm<\/strong><\/p>\n<p><strong>5. <\/strong>Click <strong>Apply<\/strong>.<\/p>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring132.png\" \/><\/p>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring133.png\" \/><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring134.png\" \/><\/p>\n<p><span style=\"color: black;\"><strong>6. <\/strong>Select <strong>Weblogic Domain<\/strong>\u2013<strong>IDM Domain <\/strong>from the Navigator.<br \/>\n<\/span><\/p>\n<p><strong>7. <\/strong>Select <strong>Security<\/strong>\u2013<strong>Credentials <\/strong>from the down menu.<\/p>\n<p><strong>8. <\/strong>Expand the key <strong>oim<\/strong>.<\/p>\n<p><strong>9. <\/strong>Click <strong>SOAAdminPassword<\/strong>.<\/p>\n<p><strong>10. <\/strong>Click <strong>Edit<\/strong>.<\/p>\n<p><strong>11. <\/strong>Change the username to weblogic_idm and set the password to the accounts password.<\/p>\n<p><strong>12. <\/strong>Click <strong>OK<\/strong>.<\/p>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring135.png\" \/><\/p>\n<p>&nbsp;<\/p>\n<p><strong>13. <\/strong>Run the reconciliation process to enable the Oracle WebLogic Server administrator,<\/p>\n<p>weblogic_idm, to be visible in the OIM Console. Follow these steps:<\/p>\n<p><strong>a. <\/strong>Log in to Oracle Identity Manager at:<\/p>\n<p><a href=\"https:\/\/fusion:7777\/oim\"><span style=\"color: blue; text-decoration: underline;\">https:\/\/fusion:7777\/oim<\/span><\/a> as the user xelsysadm.<\/p>\n<p><strong>b. <\/strong>Click <strong>Advanced<\/strong>.<\/p>\n<p><strong>c. <\/strong>Click the <strong>System Management <\/strong>tab<\/p>\n<p><strong>d. <\/strong>Click the arrow for the <strong>Search Scheduler <\/strong>to list all the schedulers.<\/p>\n<p><strong>e. <\/strong>Select <strong>LDAP User Create <\/strong>and <strong>Update Full Reconciliation<\/strong>.<\/p>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring136.png\" \/><\/p>\n<p><strong>f. <\/strong>Click <strong>Actions-&gt;Run now <\/strong>to run the job.<\/p>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring137.png\" \/><\/p>\n<p>&nbsp;<\/p>\n<p>Go to the Administration page and perform a search to verify that the user is visible in the Oracle Identity Manager console.<\/p>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring138.png\" \/><\/p>\n<p>&nbsp;<\/p>\n<p><strong>14. <\/strong>Select <strong>Administration<\/strong>.<\/p>\n<p><strong>15. <\/strong>Click <strong>Advanced Search<\/strong>\u2013<strong>Roles<br \/>\n<\/strong><\/p>\n<p><strong>16. <\/strong>Search for the Administrators role.<\/p>\n<p><strong>17. <\/strong>Click the <strong>Administrators <\/strong>Role.<\/p>\n<p><strong>18. <\/strong>Click <strong>Open<\/strong>.<\/p>\n<p><strong>19. <\/strong>Click the <strong>Member <\/strong>tab.<\/p>\n<p><strong>20. <\/strong>Click <strong>Assign<\/strong>.<\/p>\n<p><strong>21. <\/strong>Type weblogic_idm in the Search box and Click <strong>-&gt;<\/strong>.<\/p>\n<p><strong>22. <\/strong>Select <strong>weblogic_idm <\/strong>from the list of available users.<\/p>\n<p><strong>23. <\/strong>Click <strong>&gt; <\/strong>to move to <strong>Selected Users<\/strong>.<\/p>\n<p><strong>24. <\/strong>Click <strong>Save<\/strong>.<\/p>\n<p>&nbsp;<\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring139.png\" \/><\/p>\n<p><img decoding=\"async\" alt=\"\" src=\"http:\/\/www.oratraining.com\/blog\/wp-content\/uploads\/2012\/04\/040212_1602_Configuring140.png\" \/><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"text-decoration: underline;\"><strong>25. <\/strong>Restart Oracle Identity Manager managed server.<br \/>\n<\/span><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"color: #632423; font-size: 12pt;\"><strong>Update Oracle Identity Manager JMS Queues<br \/>\n<\/strong><\/span><\/p>\n<p>Update Oracle Identity Manager JMS queues as follows:<\/p>\n<p><strong>1. <\/strong>Log in to the WebLogic console as the administrative user.<\/p>\n<p><strong>2. <\/strong>Select <strong>Services <\/strong>&#8211; <strong>Messaging <\/strong>&#8211; <strong>JMS Modules <\/strong>from the Domain Structure menu.<\/p>\n<p><strong>3. <\/strong>Click <strong>OIMJMSModule<\/strong>.<\/p>\n<p><strong>4. <\/strong>Click <strong>Lock &amp; Edit<\/strong>.<\/p>\n<p><strong>5. <\/strong>For each of the queues, click the queue then click the <strong>Delivery Failure <\/strong>tab and change <strong>Redelivery Limit <\/strong>value from -1 to 1, then click <strong>Save<\/strong>.<\/p>\n<p><strong>6. <\/strong>Make sure you have performed Steps 4 and 5 for <strong>all the queues under OIMJMSModule<\/strong>.<\/p>\n<p><strong>7. <\/strong>Click <strong>Activate Changes<\/strong>.<\/p>\n<p><strong>8. <\/strong><span style=\"text-decoration: underline;\">Restart Oracle Identity Manager server<\/span><\/p>\n<p>&nbsp;<\/p>\n<p>This concludes the configuration of Oracle Identity and Access Management components. Next is very important step to integrate OIM and OAM.<\/p>\n<p>&nbsp;<\/p>\n<p>Next:\u00a0<strong><a title=\"Integrate Oracle Identity Manager (OIM) and Oracle Access Manager (OAM)\" href=\"http:\/\/www.oratraining.com\/blog\/2012\/04\/integrate-oracle-identity-manager-oim-and-oracle-access-manager-oam\/\">Integrate Oracle Identity Manager (OIM) and Oracle Access Manager (OAM)<\/a><\/strong><\/p>\n<p><strong><a title=\"Oracle Fusion Applications installation \u2013 Step by step guide\" href=\"http:\/\/www.oratraining.com\/blog\/2012\/02\/oracle-fusion-applications-installation-step-by-step-guide\/\">Installing Oracle Fusion Applications \u2013 steps<\/a><\/strong><\/p>\n<ol>\n<li><strong><a title=\"Installing Fusion Applications Provisioning Framework\" href=\"http:\/\/www.oratraining.com\/blog\/2012\/02\/installing-fusion-applications-provisioning-framework\/\">Installing Fusion Applications Provisioning Framework<\/a><br \/>\n<\/strong><\/li>\n<li><strong><a title=\"Installing Transactional Database\" href=\"http:\/\/www.oratraining.com\/blog\/2012\/02\/installing-transactional-database\/\">Installing Oracle 11g Database (Applications Transactional Database)<\/a><br \/>\n<\/strong><\/li>\n<li><strong><a title=\"Running Fusion Applications RCU\" href=\"http:\/\/www.oratraining.com\/blog\/2012\/02\/running-fusion-applications-rcu\/\">Running Oracle Fusion Applications Repository Creation Utility (Applications RCU)<br \/>\n<\/a><\/strong><\/li>\n<li><strong>Creating another database for Oracle \u00a0<strong>Identity Management Infrastructure\u00a0<\/strong>(optional)<br \/>\n<\/strong><\/li>\n<li><strong><a title=\"Running Repository Creation Utility for Oracle Identity Management components\" href=\"http:\/\/www.oratraining.com\/blog\/2012\/02\/running-repository-creation-utility-for-oracle-identity-management-components\/\">Running Repository Creation Utility (RCU) for Oracle Identity Management components<\/a><\/strong><\/li>\n<li><strong><a title=\"Installing Oracle Identity and Access Management components\" href=\"http:\/\/www.oratraining.com\/blog\/2012\/02\/installing-oracle-identity-and-access-management-components\/\">Installing Oracle Identity and Access Management Components<\/a><br \/>\n<\/strong><\/li>\n<li><strong><a title=\"Configuring Oracle Identity and Access Management components\" href=\"http:\/\/www.oratraining.com\/blog\/2012\/02\/configuring-oracle-identity-and-access-management-components\/\">Configuring Oracle Identity and Access Management components<\/a><br \/>\n<\/strong><\/li>\n<li><strong><strong><a title=\"Integrate Oracle Identity Manager (OIM) and Oracle Access Manager (OAM)\" href=\"http:\/\/www.oratraining.com\/blog\/2012\/04\/integrate-oracle-identity-manager-oim-and-oracle-access-manager-oam\/\">Integrate Oracle Identity Manager (OIM) and Oracle Access Manager (OAM)<\/a><\/strong><br \/>\n<\/strong><\/li>\n<li><strong><a title=\"Creating a new Provisioning Plan\" href=\"http:\/\/www.oratraining.com\/blog\/2012\/02\/creating-a-new-provisioning-plan\/\">Creating a New Provisioning Plan<\/a><br \/>\n<\/strong><\/li>\n<li><strong><a title=\"Provisioning an Applications Environment\" href=\"http:\/\/www.oratraining.com\/blog\/2012\/03\/provisioning-an-applications-environment\/\">Provisioning an Applications Environment<\/a><\/strong><\/li>\n<\/ol>\n","protected":false},"excerpt":{"rendered":"<p>Oracle Fusion Applications Installation: Configuring Oracle Identity and Access Management components Previous:\u00a0Installing Oracle Identity and Access Management Components Important Note: This is OLD guide for old version 11.1.1.5. Please follow instructions at\u00a0http:\/\/www.oratraining.com\/blog\/2012\/12\/oracle-fusion-applications-installation-step-by-step-guide-11-1-5\/\u00a0for latest guide for current version i.e. 11.1.5 &nbsp; Configuring Oracle Identity Management components&#8221; can be divided into following tasks. Please note that we [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"footnotes":""},"categories":[4],"tags":[],"class_list":["post-1181","post","type-post","status-publish","format-standard","hentry","category-oracle"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/www.oratraining.com\/blog\/wp-json\/wp\/v2\/posts\/1181","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.oratraining.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.oratraining.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.oratraining.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.oratraining.com\/blog\/wp-json\/wp\/v2\/comments?post=1181"}],"version-history":[{"count":0,"href":"https:\/\/www.oratraining.com\/blog\/wp-json\/wp\/v2\/posts\/1181\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.oratraining.com\/blog\/wp-json\/wp\/v2\/media?parent=1181"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.oratraining.com\/blog\/wp-json\/wp\/v2\/categories?post=1181"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.oratraining.com\/blog\/wp-json\/wp\/v2\/tags?post=1181"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}