Symantec IGA

  • 1.  Q&A Questions/Answers - Migration

    Posted May 16, 2019 06:33 PM

    Situation: Client is reinstalling IM 14.2 in FIPS mode. They have an 80k user store that contains password Q&A values encrypted using non-FIPS RC2. With FIPS, the attribute is AES encrypted.

     

    Question: Is there a utility to do this in a secure fashion? If you made this conversion, how did you handle it?

     

    Thanks.



  • 2.  Re: Q&A Questions/Answers - Migration
    Best Answer

    Broadcom Employee
    Posted May 17, 2019 10:37 AM

    There is not a tool or utility to do this.

     

    At a high level, the only option would be to find a way to pull the information out by asking IM for the information in some way.  You could not pull the information out of the DB or LDAP.  If possible, use TEWS to hit the user base to give it to you.  Once done use a bulk load to feed the information back in.

     

    Thank you.



  • 3.  Re: Q&A Questions/Answers - Migration

    Posted May 17, 2019 10:41 AM

    Thanks Scott.