Select the Trusted Source check box on the Resource Object tab.

11-82 Oracle Fusion Middleware Developers Guide for Oracle Identity Manager process forms as regular accounts. A service account is distinguished from a regular account by an internal flag. When a user is provisioned with a service account, Oracle Identity Manager manages a mapping from the users identity to the service account. When the resource is revoked, or the user gets deleted, the provisioning process for the service account does not get canceled which would cause the undo tasks to start. Instead, a task is inserted into the provisioning process the same way Oracle Identity Manager handles Disable and Enable actions. This task removes the mapping from the user to the service account, and returns the service account to the pool of available accounts. This management capability is available through APIs. 12 Developing Provisioning Processes 12-1 12 Developing Provisioning Processes This chapter describes process management with the Design Console. It contains the following topics: ■ Overview of Process Management ■ Email Definition Form ■ Process Definition Form

12.1 Overview of Process Management

The Process Management folder provides you with tools for creating and managing Oracle Identity Manager processes and e-mail templates. This folder contains the following forms: ■ Email Definition : This form enables you to create templates for e-mail notifications. ■ Process Definition : This form lets you create and manage provisioning processes. It also lets you start the Workflow Definition Renderer that displays your workflow definition graphically.

12.2 Email Definition Form

The Email Definition form, as shown in Figure 12–1 , is located in the Process Management folder. You use this form to create templates for e-mail notifications. These notifications can be set for sending to the user when: ■ A task is assigned to the user. ■ The task achieves a particular status. 12-2 Oracle Fusion Middleware Developers Guide for Oracle Identity Manager Figure 12–1 Email Definition Form You apply e-mail definitions through the Assignment tab of the Process Definition form.

12.2.1 Specifying the E-Mail Server

Before using the Email Definition form, you must specify the address of the e-mail server that Oracle Identity Manager will use to send e-mail notifications to users. In Oracle Identity Manager 11g Release 1 11.1.1, the e-mail server is specified by using the Administrative and User Console. To specify the e-mail server: 1. Login to the Administrative and User Console, and go to Advanced Administration.

2. Click the System Management tab, and then click System Configuration.

3. Search for the Email Server system property, and click the property to open the details of the property. 4. Ensure that the property name is set to the name of the resource asset instance that represents your e-mail server, and click Save.

5. In the Administrative and User Console, click Advanced, and then click System

Management. Search for the Email Server system property. The value of this property is the Email Server IT resource that is associated with your e-mail server. Note: The value of the Email Server system property must be the e-mail server IT resource and not the hostname of the e-mail server. Developing Provisioning Processes 12-3 6. Once this IT resource is displayed, specify the IP address of the e-mail server and the name and password of the user who validates the usage of this server.

12.2.2 Email Definition Form

Table 12–1 describes the fields of the Email Definition form. Table 12–1 Fields of the Email Definition Form Field Name Description Name The name of the e-mail definition. Type This region contains three options for the following: ■ Whether or not to categorize the e-mail definition as related to a request or a provisioning process ■ Whether or not to associate a variable for the e-mail definition with a request or a provisioning process ■ Whether or not to associate a variable for the e-mail definition with a general process To classify the e-mail definition as a provisioning definition or to associate the e-mail variable with a provisioning process, select the Provisioning Related option. To categorize the e-mail definition as a general announcement, select the General option. Object Name From this lookup field, select the resource object that is associated with the provisioning process to which the e-mail definition is related. Note : Leave this lookup field empty to make the e-mail definition available for use with all resource objects. Process Name From this lookup field, select a provisioning process that was assigned to the selected resource object. This is the provisioning process to which the e-mail definition is to be related. Note : If the Provisioning Related option is not selected, both the Object Name and Process Name lookup fields are grayed out. Language From this lookup field, select the language that is associated with the e-mail definition. Region From this lookup field, select the region that is associated with the language in the e-mail definition. Targets Select the source of the variable for the e-mail definition. For example, if the variable you want to select is User Login, then the source to select is the User Profile Information. Note : The items that are displayed in this box reflect the options you selected from the Type region. Variables From this box, select the variable for the e-mail definition, for example, User Login. The variables, which are displayed in this box, reflect the items you selected from the Targets box. From Currently, two types of users can be selected from this box: ■ Requester : The user who created the request. ■ User : Any Oracle User with an e-mail address, which is displayed in the Contact Information tab of their Users form. User Login The ID of the user in the From region of the e-mail notification. Note : If the User item is not displayed in the From box, the User Login field is grayed out.