Project

General

Profile

Actions

Task #666

closed

Set one password to all systems when creating identity.

Added by Petr Michal over 6 years ago. Updated over 6 years ago.

Status:
Closed
Priority:
Normal
Assignee:
Radek Tomiška
Category:
Provisioning
Target version:
Start date:
08/24/2017
Due date:
% Done:

100%

Estimated time:
Owner:

Description

Now its not easily possible to set one password to more systems when creating new user in IdM. I have discussed this with Zdeněk and we agreed that this is a bug.

Implementation must include, that identity can get system roles in synchronizaciot/rec. worflow and as default role on its organization.


Related issues

Related to IdStory Identity Manager - Task #667: Advanced notification with new passwordNewOndřej Kopr08/24/2017

Actions
Related to IdStory Identity Manager - Task #815: Identity state implementationClosedRadek Tomiška12/11/201712/11/2017

Actions
Related to IdStory Identity Manager - Task #2703: Set same password to all systems for new identity.ClosedVít Švanda03/03/2021

Actions
Actions #1

Updated by Vít Švanda over 6 years ago

  • Assignee changed from Vít Švanda to Ondřej Kopr
Actions #2

Updated by Vít Švanda over 6 years ago

  • Target version changed from Diamond (7.4.0) to Emerald (7.5.0)
Actions #3

Updated by Petr Michal over 6 years ago

  • Related to Task #667: Advanced notification with new password added
Actions #4

Updated by Ondřej Kopr over 6 years ago

Requirements:
  • notification has been sent only once with one password for all system -> after i know which system has account for this identity,
  • synchronization must take a password from the system, attribute may be - plain text, encrypted with some keys, etc.,
  • current behavior in the modification is correct. We change our behavior only to manual create and synchronization.
Implementation variants:
  1. explicit call change password after creating an account and set all account same password (after add defautl contract and automatic roles)
  2. password is given in event (password change isnt call), add mapping to event value, or we can same mechanism as now = PASSWORD
Actions #5

Updated by Radek Tomiška over 6 years ago

  • Target version deleted (Emerald (7.5.0))
Actions #6

Updated by Radek Tomiška over 6 years ago

  • Related to Task #815: Identity state implementation added
Actions #7

Updated by Radek Tomiška over 6 years ago

  • Status changed from New to In Progress
  • Assignee changed from Ondřej Kopr to Radek Tomiška
  • Target version set to Forsterite (7.6.0)
  • % Done changed from 0 to 90

I implemented processor in acc module:
- when identity starts to be valid (#815) and has at least one account on target system, then new password is generated and changed on all identity's accounts => identity ha the same password in all accounts.
- i created a notification template - when password is changed. Notification is send to identity about new password on which accounts.

Documentation remains.

Actions #8

Updated by Vít Švanda over 6 years ago

I did review and test and works correctly.

Actions #9

Updated by Radek Tomiška over 6 years ago

  • Status changed from In Progress to Closed
  • % Done changed from 90 to 100
Actions #10

Updated by Radek Tomiška about 3 years ago

  • Related to Task #2703: Set same password to all systems for new identity. added
Actions

Also available in: Atom PDF