1.3 Managing Administrators

You can create administrators with different access controls and manage them in Administration Console.

Administration Console notifies you when another administrator makes changes to a policy container or to an Access Manager device. The person who is currently editing the configuration is listed at the top of the page with an option to unlock and with the person’s distinguished name and IP address. Unlocking destroys all changes done by the other administrator.

WARNING:Locking is not available the Identity Server pages. In case of multiple administrators, they need to coordinate with each other and only one administrator modifies an Identity Server cluster at any given time.

Multiple Sessions: Do not start multiple sessions of Administration Console in the same browser on a workstation. Browser sessions share settings that can result in problems when you apply changes to configuration settings. However, if you are using two different brands of browsers simultaneously, such as Internet Explorer and Firefox, it is possible to avoid the session conflicts.

Multiple Administration Consoles: All configuration changes must be made in the primary console. If you make changes in both primary and secondary consoles, the configuration might become invalid due to browser caching.

The following sections explain how to create additional administrator accounts, how to delegate rights to administrators, and how to manage policy view administrators: