Management Agent for CA-ACF2

Applies To: Windows Server 2003 with SP1

The management agent for Computer Associates (CA) eTrust Access Control Facility (ACF2) supports bi-directional synchronization of user accounts from CA-ACF2 to Microsoft® Identity Integration Server (MIIS) 2003 and from MIIS to ACF2.


If available in Identity Integration Feature Pack for Microsoft® Windows Server™ Active Directory® directory service (IIFP)


Management agent type


Supported connected data source versions

  • eTrust CA-ACF2 Security r8 for z/OS Service Pack 2

  • eTrust CA-ACF2 Security for z/OS r6.5

MIIS 2003 features supported

  • Password management by using password extension

  • Full Import

  • Delta Import

  • Export

Schema Information

This management agent uses a default schema with no schema discovery during the configuration of the management agent.


  • For best performance on import operations, when configuring the management agent for ACF2, you should include the minimal set of attributes that are needed. Remove unused attributes from the default server configuration to improve the performance of imports.

  • The ACF2 ID must be assigned sufficient privileges to create and manage ACF2 users. The ID must have ACCOUNT and SECURITY attributes set to TRUE.

  • If you are using the management agent for ACF2 for delta imports, the management agent needs to know the System Time on the host whenever a delta import is run. This management agent supports a configuration parameter called SystemTimeFormat. The administrator can use this parameter to specify a time format such as "MM/DD/YY" that the management agent will use to format the time it obtains from the host. This parameter should be set through Properties\Configure Additional Parameters in the management agent designer.

See Also


Management Agents in MIIS 2003