Skip Headers
Oracle® Fusion Middleware Upgrade Guide for Oracle Identity Management
11
g
Release 1 (11.1.1)
Part Number E10129-02
Home
Book List
Contact Us
Next
View PDF
Contents
Title and Copyright Information
Preface
Audience
Documentation Accessibility
Related Documents
Conventions
1
Summary of the Oracle Identity Management Upgrade Process
1.1
Flow Chart of the Oracle Identity Management Upgrade Process
1.2
Table Describing the Steps in the Oracle Application Server Upgrade Process
Part I Preparing for an Oracle Identity Management Upgrade
2
Supported Starting Points for Oracle Identity Management Upgrade
2.1
Supported Starting Points for Oracle Internet Directory and Oracle Directory Integration Platform Upgrade
2.2
Supported Starting Points for Oracle Virtual Directory Upgrade
2.3
Supported Starting Points for Oracle Identity Federation Upgrade
3
Types of Oracle Identity Management Environments
3.1
Summary of the Oracle Identity Management 10
g
and 11
g
Components
3.1.1
Identity Management Components Available in Oracle Application Server 10
g
Release 2 (10.1.2)
3.1.2
Identity Management Components Available in Oracle Identity Management 10
g
(10.1.4)
3.1.3
Identity Management Components Available in Oracle Fusion Middleware 11
g
3.2
Oracle Internet Directory and Oracle Directory Integration Platform Topology
3.2.1
Upgrading a Colocated Identity Management Environment
3.2.2
Upgrading a Non-Colocated Identity Management Environment
3.3
Oracle Virtual Directory Topologies
3.4
Oracle Identity Federation Topologies
Part II Upgrading Your Oracle Identity Management Environment
4
Upgrading Your Oracle Internet Directory Environment
4.1
Task 1: Understand Your Upgrade Options for SSO and Oracle Delegated Administration Services
4.2
Task 2: If Necessary, Upgrade the Database That Contains the 10
g
Identity Management Schemas
4.3
Task 3: Install and Configure the Oracle Internet Directory and Oracle Directory Integration Platform 11
g
Components
4.3.1
Understanding the Implications of Installing Oracle Internet Directory 11
g
Against the Oracle Internet Directory 10
g
Schema
4.3.2
Installing the Oracle WebLogic Server Software and Creating the Middleware Home
4.3.2.1
When is Oracle WebLogic Server Required?
4.3.2.2
Installing the Oracle WebLogic Server Software and Create the Middleware Home
4.3.3
Installing and Configuring Oracle Internet Directory and Oracle Directory Integration Platform 11
g
in Preparation for Upgrade
4.3.3.1
Before You Begin Installing Oracle Internet Directory and Oracle Directory Integration Platform
4.3.3.2
Procedure for Installing Oracle Internet Directory and Oracle Directory Integration Platform Before Upgrade
4.4
Task 4: Use the Upgrade Assistant to Upgrade Oracle Internet Directory
4.4.1
Task 4a: Perform Required Pre-Upgrade Tasks
4.4.1.1
Verifying the Status of the Oracle Application Server Identity Management 10
g
Schemas
4.4.1.2
Modifying the SSL Port Configuration When Using SSL Authentication Mode on the Windows Operating System
4.4.2
Task 4b: Start the Upgrade Assistant for an OracleAS Identity Management Upgrade
4.4.3
Task 4c: Upgrade the Oracle Internet Directory and Oracle Directory Integration Platform Instance
4.4.3.1
Using the Upgrade Assistant to Upgrade Oracle Internet Directory and Oracle Directory Integration Platform
4.4.3.2
About Specifying Real Application Clusters (RAC) Database Details on the Specify Database Details Screen
4.4.3.3
Recovering From an Oracle Internet Directory Error During the Upgrade Assistant Examine Phase
4.5
Task 5: Perform Any Required Oracle Internet Directory and Oracle Directory Integration Platform Post-Upgrade Tasks
4.5.1
Recreating Any Non-Default Oracle Internet Directory Instances
4.5.2
Disabling the Oracle Internet Directory and Oracle Directory Integration Platform 10
g
Components
4.5.3
Configuring OPMN in the 10
g
Oracle Home After Upgrading Oracle Internet Directory to 11
g
4.5.4
Enabling Oracle Internet Directory Referential Integrity After Upgrade
4.5.5
Reviewing Configuration Attributes That Are Not Upgraded to Oracle Internet Directory 11
g
4.5.6
Removing Oracle Internet Directory and Oracle Directory Integration Platform 10
g
from Application Server Control
4.5.7
Removing Unneeded Oracle Directory Integration Platform Template Profiles After Upgrade
4.6
Task 6: Verify that the Oracle Internet Directory and Oracle Directory Integration Platform Upgrade Was Successful
5
Upgrading Your Oracle Virtual Directory Environment
5.1
Task 1: Decide Upon an Oracle Virtual Directory Topology
5.2
Task 2: Install and Configure Oracle Virtual Directory 11
g
5.2.1
Installing the Oracle WebLogic Server Software and Creating the Middleware Home
5.2.2
Installing and Configuring Oracle Virtual Directory 11
g
in Preparation for Upgrade
5.3
Task 3: Use the Upgrade Assistant to Upgrade Oracle Virtual Directory
5.3.1
Task 3a: Stop the Oracle Virtual Directory Instances
5.3.2
Task 3b: Start the Upgrade Assistant for an Oracle Virtual Directory Upgrade
5.3.3
Task 3c: Upgrade Oracle Virtual Directory
5.4
Task 4: Perform Any Required Oracle Virtual Directory Post-Upgrade Tasks
5.4.1
Configuring Anonymous Ciphers for Oracle Virtual Directory SSL Listeners
5.4.2
Starting Oracle Virtual Directory After Upgrade When Using Privileged Ports
5.4.3
Updating Oracle Virtual Directory Monitoring Properties in Fusion Middleware Control
5.4.4
Upgrading Oracle Virtual Directory Logging Configuration Settings
5.5
Task 5: Verify that the Oracle Virtual Directory Upgrade Was Successful
6
Upgrading Your Oracle Identity Federation Environment
6.1
Task 1: Decide Upon an Oracle Identity Federation Topology
6.2
Task 2: Use the Repository Creation Utility to Install the Oracle Identity Federation Schema in the Database
6.2.1
Verifying that the Database Meets the Minimum Requirements for the Oracle Identity Federation Schema
6.2.2
Running the Repository Creation Utility in Preparation for Upgrading Oracle Identity Federation
6.3
Task 3: Install and Configure Oracle Identity Federation 11
g
6.3.1
Task 3a: Install the Oracle WebLogic Server Software and Create the Middleware Home
6.3.2
Task 3b: Install and Configure Oracle Identity Federation 11
g
in Preparation for Upgrade
6.3.3
Task 3c: Create an Oracle HTTP Server Instance and Link It to Oracle Identity Federation 11
g
6.4
Task 4: Use the Upgrade Assistant to Upgrade Oracle Identity Federation
6.4.1
Task 4a: Start the Upgrade Assistant for an Oracle Identity Federation Upgrade
6.4.2
Task 4b: Upgrade Oracle Identity Federation
6.5
Task 5: Perform Any Required Oracle Identity Federation Post-Upgrade Tasks
6.5.1
Integrating Oracle Identity Federation 11
g
with Oracle Access Manager 10
g
6.5.2
Using a Custom Authentication Engine or Custom SP Engine with Oracle Identity Federation 11
g
6.5.2.1
Modifying the Authentication Engine Code
6.5.2.2
Modifying the SP Engine Code
6.5.2.3
Changes to the Logout Service for Authentication or SP Engines
6.5.2.4
Deploying the Authentication or SP Engine
6.5.2.5
Creating the Authentication Engine in Oracle Identity Federation 11
g
6.5.2.6
Creating the SP Engine in Oracle Identity Federation 11
g
6.5.3
Reconfiguring Oracle Single Sign-On Server After Upgrade to Work with Oracle Identity Federation 11
g
6.5.4
About Backwards Compatibility for ShareID Service URLs
6.5.5
Upgrading Oracle Identity Federation SSL Configuration
6.5.6
Setting Oracle Identity Federation System Properties After Upgrade
6.5.7
Additional Oracle Identity Federation Post-Upgrade Tasks
6.6
Task 6: Verify that the Oracle Identity Federation Upgrade Was Successful
Part III Upgrading Oracle Identity Management High Availability Environments
7
Upgrading Oracle Internet Directory High Availability Environments
7.1
Summary of Oracle Internet Directory High Availability Upgrade Starting Points
7.1.1
High Availability Topologies Based on a Distributed Identity Management Environment
7.1.2
High Availability Topologies Based on a Colocated Identity Management Environment
7.1.3
High Availability Environments Based on Standalone Oracle Internet Directory Instances
7.2
Before You Begin Upgrading Your Oracle Identity Management High Availability Environment
7.2.1
Conventions Used in This Chapter
7.2.2
Prerequisites for Oracle Identity Management High Availability Upgrade
7.2.3
Supported High Availability Environments for Upgrade
7.2.4
Reducing Downtime During Upgrade With Directory Replication
7.3
Upgrading Oracle Internet Directory and Oracle Directory Integration Platform in a High Availability Environment
7.3.1
Task 1: On IDMHOST1, Install Oracle WebLogic Server and Create the Middleware Home
7.3.2
Task 2: On IDMHOST1, Install and Configure Oracle Internet Directory and Oracle Directory Integration Platform and Create the Oracle WebLogic Server Cluster
7.3.3
Task 3: On IDMHOST1, Upgrade Oracle Internet Directory and Oracle Directory Integration Platform to 11
g
7.3.4
Task 4: On IDMHOST1, Configure Oracle Directory Integration Platform to Use the Oracle Internet Directory Virtual Host
7.3.5
Task 5: On IDMHOST1, Verify the Oracle Internet Directory and Oracle Directory Integration Platform Upgrade
7.3.6
Task 6: On IDMHOST2, Install Oracle WebLogic Server and Create the Middleware Home
7.3.7
Task 7: On IDMHOST2, Install and Configure Oracle Internet Directory and Oracle Directory Integration Platform
7.3.8
Task 8: Copy the Oracle Directory Integration Platform Directory from IDMHOST1 to IDMHOST2
7.3.9
Task 9: On IDMHOST2, Set the Anonymous Bind Property to Allow
7.3.10
Task 10: Start the Managed Server on IDMHOST2
7.3.11
Task 11: Verify That the Components Are Up and Running on IDMHOST2
7.4
Upgrading Oracle Internet Directory and Oracle Directory Integration Platform in a Colocated High Availability Environment
7.4.1
Task 1: On IDMHOST1, Install Oracle WebLogic Server and Create the Middleware Home
7.4.2
Task 2: On IDMHOST1, Install and Configure Oracle Internet Directory and Oracle Directory Integration Platform and Create the Oracle WebLogic Server Cluster
7.4.3
Task 3: On IDMHOST1, Upgrade Oracle Internet Directory and Oracle Directory Integration Platform to 11
g
7.4.4
Task 4: On IDMHOST1, Configure Oracle Directory Integration Platform to Use the Oracle Internet Directory Virtual Host
7.4.5
Task 5: On IDMHOST1, Disable Oracle Internet Directory and Oracle Directory Integration Platform in the 10
g
Oracle Home
7.4.6
Task 6: On IDMHOST1, Verify the Oracle Internet Directory and Oracle Directory Integration Platform Upgrade
7.4.7
Task 7: On IDMHOST2, Install Oracle WebLogic Server and Create the Middleware Home
7.4.8
Task 8: On IDMHOST2, Install and Configure Oracle Internet Directory and Oracle Directory Integration Platform
7.4.9
Task 9: Copy the Oracle Directory Integration Platform Directory from IDMHOST1 to IDMHOST2
7.4.10
Task 10: On IDMHOST2, Set the Anonymous Bind Property to Allow
7.4.11
Task 11: On IDMHOST2, Disable Oracle Internet Directory and Oracle Directory Integration Platform in the 10
g
Oracle Home
7.4.12
Task 12: Start the Managed Server on IDMHOST2
7.4.13
Task 13: Verify That the Components Are Up and Running on IDMHOST2
7.5
Upgrading Oracle Internet Directory Only
7.5.1
Upgrading Oracle Internet Directory With a Local Oracle WebLogic Server Domain
7.5.1.1
Task 1: On IDMHOST1, Install Oracle WebLogic Server and Create the Middleware Home
7.5.1.2
Task 2: On IDMHOST1, Install and Configure Oracle Internet Directory
7.5.1.3
Task 3: On IDMHOST1, Upgrade Oracle Internet Directory to 11
g
7.5.1.4
Task 4: On IDMHOST1, Verify the Upgraded Oracle Internet Directory Instance
7.5.1.5
Task 5: On IDMHOST2, Install and Configure Oracle Internet Directory
7.5.1.6
Task 6: On IDMHOST2, Register the Oracle Internet Directory Instance with the Domain on IDMHOST1
7.5.1.7
Task 7: On IDMHOST2, Verify the Oracle Internet Directory Instance
7.5.2
Upgrading Oracle Internet Directory With a Remote Domain or No Domain
7.5.2.1
Task 1: On IDMHOST1, Install and Configure Oracle Internet Directory
7.5.2.2
Task 2: On IDMHOST1, Upgrade Oracle Internet Directory to 11
g
7.5.2.3
Task 3: On IDMHOST1, Verify the Oracle Internet Directory Instance
7.5.2.4
Task 4: On IDMHOST2, Install and Configure Oracle Internet Directory
7.5.2.5
Task 5: Verify the Oracle Internet Directory Instances on IDMHOST1 and IDMHOST2
7.5.2.6
Task 6: Optionally, Register the Oracle Internet Directory Instances on IDMHOST1 and OIDHOST2 with an Existing Remote Domain
8
Upgrading an Oracle Identity Management Cold Failover Cluster Environment
8.1
Task 1: Preparing for Upgrading Your Oracle Fusion Middleware Cold Failover Cluster Environment
8.2
Task 2: Install Oracle WebLogic Server and Create the Middleware Home
8.3
Task 3: Install Oracle Internet Directory and Oracle Directory Integration Platform
8.4
Task 4: Verify the Oracle Internet Directory and Oracle Directory Integration Platform Installation
8.5
Task 5: Upgrade Oracle Internet Directory and Oracle Directory Integration Platform
8.6
Task 6: Verify the Upgrade of Oracle Internet Directory and Oracle Directory Integration Platform
8.7
Task 7: Configuring the Upgraded Components for Active-Passive Deployments
8.7.1
Task 7a: Transform the Infrastructure Components for Cold Failover Clusters
8.7.2
Task 7b: Transforming Oracle Internet Directory and Its Clients for Cold Failover Clusters
8.8
Task 8: Configure Fusion Middleware Control to Monitor the Upgraded Components
8.9
Task 9: Verify the Upgraded High Availability Environment
9
Performing an Oracle Identity Management Multimaster and Fan-Out Replication Upgrade
9.1
Task 1: Review the Terminology, Prerequisites, and Key Concepts For Upgrading a Replication Environment
9.1.1
Terminology Conventions for This Chapter
9.1.2
Valid Starting Points When Upgrading a Replication Environment
9.1.3
Oracle Recommendations When Upgrading a Replication Environment
9.2
Task 2: Prepare for the Oracle Identity Management Multimaster or Fan-Out Replication Upgrade
9.3
Task 3: Perform the Oracle Internet Directory Replica Upgrade
9.3.1
Selecting a Replica Upgrade Method
9.3.2
Upgrading One Replica at a Time
9.3.3
Upgrading Oracle Internet Directory on Multiple Replicas Simultaneously
9.4
Task 4: Completing the Upgrade of Each Replica
9.4.1
Changing the Replication DN Password in the Oracle Internet Directory Wallet for Each Replica
9.4.1.1
Changing the Replication DN Password
9.4.1.2
Resetting the Replication DN Password
9.4.2
Setting the orclreplicationid Attribute in the Upgraded 11
g
Directory
10
Upgrading an Oracle Virtual Directory High Availability Environment
10.1
Understanding the Oracle Virtual Directory High Availability Upgrade
10.2
Upgrading Oracle Virtual Directory When Using a Local Oracle WebLogic Server Domain
10.2.1
Task 1: On IDMHOST1, Optionally Install Oracle WebLogic Server and Create the Middleware Home
10.2.2
Task 2: On IDMHOST1, Install and Configure Oracle Virtual Directory 11
g
10.2.3
Task 3: On IDMHOST1, Upgrade the Oracle Virtual Directory Instance to 11
g
10.2.4
Task 4: On IDMHOST2, Install and Configure the Second Oracle Virtual Directory Instance
10.2.5
Task 5: On IDMHOST2, Upgrade the Second Oracle Virtual Directory Instance
10.2.6
Task 6: On IDMHOST2, Register the Second Oracle Virtual Directory Instance with the Domain on IDMHOST1
10.3
Upgrading Oracle Virtual Directory When Using a Remote Oracle WebLogic Server Domain or No Domain
10.3.1
Task 1: On IDMHOST1, Install and Configure Oracle Virtual Directory 11
g
10.3.2
Task 2: On IDMHOST1, Upgrade the Oracle Virtual Directory Instance to 11
g
10.3.3
Task 3: On IDMHOST2, Install and Configure the Second Oracle Virtual Directory Instance
10.3.4
Task 4: On IDMHOST2, Upgrade the Second Oracle Virtual Directory Instance
10.3.5
Task 5: On IDMHOST2, Optionally Register the Second Oracle Virtual Directory Instance with the Domain on WLSHOST1
11
Upgrading an Oracle Identity Federation High Availability Environment
11.1
Task 1: Understand the Oracle Identity Federation High Availability Upgrade
11.1.1
Prerequisites for Oracle Identity Federation High Availability Upgrade
11.1.2
Conventions Used in This Chapter
11.2
Task 2: Install the Oracle Identity Federation Schema in the Database
11.3
Task 3: Install Oracle WebLogic Server and Create the Middleware Home
11.4
Task 4: Configure the Oracle WebLogic Server Domain with Only Oracle Enterprise Manager Fusion Middleware Control
11.5
Task 5: Extend the Domain and Create the First Oracle Identity Federation 11
g
Oracle Instance
11.5.1
Extending the Domain and Configuring Oracle Identity Federation
11.5.2
About Selecting and Configuring Oracle HTTP Server with Oracle Identity Federation
11.6
Task 6: Use the Upgrade Assistant to Upgrade the First Oracle Identity Federation Oracle Instance
11.6.1
Task 6a: Start the Upgrade Assistant for an Oracle Identity Federation Upgrade
11.6.2
Task 6b: Upgrade Oracle Identity Federation
11.7
Task 7: Install Oracle WebLogic Server and Create the Middleware Home on IDMHOST2
11.8
Task 8: Deinstall the Oracle Identity Federation 10
g
Instance on IDMHOST2
11.8.1
Procedure for Deinstalling the Oracle Identity Federation 10
g
Instance
11.8.2
Alternative Procedure to Avoid Port Conflicts
11.9
Task 9: Install and Configure the Second Oracle Identity Federation Instance on IDMHOST2
11.10
Task 10: Copy the Oracle Identity Federation Application from IDMHOST1 to IDMHOST2
11.11
Task 11: Start the Managed Server on IDMHOST2
11.12
Task 12: Complete Post-Upgrade Procedures
11.12.1
Configuring Routing Between Oracle Identity Federation and Oracle HTTP Server
11.12.2
Configuring the Load Balancer
11.12.3
Set Oracle Identity Federation Configuration Properties
11.12.4
Additional High Availability Tasks Associated
11.13
Task 13: Verify the Oracle Identity Federation High Availbility Upgrade
Scripting on this page enhances content navigation, but does not change the content in any way.