Setting Oracle Identity Manager properties for OAAM Changing Domain to TAP Scheme Protection Restarting Oracle Adaptive Access Manager and Oracle Identity Manager Validating Oracle Identity Manager-OAAM Integration

18-26 Oracle Fusion Middleware Enterprise Deployment Guide for Oracle Identity Management REQUESTbackUrl=https:sso.mycompany.com:443oimfacespa gesSelf.jspx ■ oaam.oim.csf.credentials.enabled : true ■ oaam.oim.url : t3:oimhost1.mycompany.com:14000,oimhost2.mycompany.com:1 4000

18.3.4 Setting Oracle Identity Manager properties for OAAM

1. Log in to the OIM administrative console at: https:sso.mycompany.com:443oimself

2. Click the Advanced link on the self-service console

3. Click Search System Properties in the System Management Box.

4. Click Advanced Search below the System Configuration search box.

5. When the advanced search screen appears click the right arrow -. Perform a

general search. Do not provide a search string.

6. Click each of the properties shown, then select Open from the Actions menu. Set

the value of each property as shown and click Save to save the value. ■ OIM.DisableChallengeQuestions: TRUE ■ OIM.ChangePasswordURL: https:sso.mycompany.com:443oaam_ serveroimChangePassword.jsp ■ OIM.ChallengeQuestionModificationURL: https:sso.mycompany.com:443oaam_ serveroimResetChallengeQuestions.jsp

18.3.5 Changing Domain to TAP Scheme Protection

Log in to the OAM console at: http:admin.mycompany.comoamconsole

1. From the Navigation Window, expand: Application Domains IAM Suite.

2. Click Authentication Policies.

3. Double click the policy Protected HigherLevel Policy.

4. Change Authentication Scheme to TAPScheme.

5. Click Apply.

18.3.6 Restarting Oracle Adaptive Access Manager and Oracle Identity Manager

Restart the following Managed Servers as described in Chapter 20.1, Starting and Stopping Oracle Identity Management Components. ■ WebLogic Administration Server ■ WLS_OAM1 and WLS_OAM2 ■ WLS_OIM1 and WLS_OIM2 ■ WLS_OAAM1 and WLS_OAAM2 Note: The property name appears in the keyword column. Integrating Components 18-27

18.3.7 Validating Oracle Identity Manager-OAAM Integration

Validate that Oracle Identity Manager is integrated with OAAM as follows: ■ Log in to OIM console at the URL: https:sso.mycompany.com:443oimself. The OAAM login page is displayed. ■ Log in to the OIM console as the xelsysadm user. You are prompted to set up challenge questions and OAAM-specific security pictures.

18.4 Integrating Oracle Identity Federation with Oracle Access Manager 11g