Identity Provider Related Tables¶
This section lists out all the identity provider related tables and their attributes in the MWARE IAM database.
IDP
When an identity provider is added, the details are stored in this table. Following are the columns of the table.
IDTENANT_IDNAMEIS_ENABLEDIS_PRIMARYHOME_REALM_IDIMAGECERTIFICATEALIASINBOUND_PROV_ENABLEDINBOUND_PROV_USER_STORE_IDUSER_CLAIM_URIROLE_CLAIM_URIDESCRIPTIONDEFAULT_AUTHENTICATOR_NAMEDEFAULT_PRO_CONNECTOR_NAMEPROVISIONING_ROLEIS_FEDERATION_HUBIS_LOCAL_CLAIM_DIALECTDISPLAY_NAME
IDP_ROLE
An identity provider may have different roles for authorization which
are different from the local roles of MWARE IAM. In such a
situation, roles at the identity provider can be mapped to the local
roles in MWARE IAM. Such roles are stored in this table. ROLE column contains the name of the role. IDP_ID
is the ID of the identity provider. Following are the columns of the
table.
IDIDP_IDTENANT_IDROLE
IDP_ROLE_MAPPING
The mappings of local roles of MWARE IAM to the roles of
identity providers are stored in this table. The LOCAL_ROLE column has the
value of the role name of the local role. The IDP_ROLE_ID column has the
ID of the identity provider’s role which points to the ID column of the
IDP_ROLE table.
IDIDP_ROLE_IDTENANT_IDUSER_STORE_IDLOCAL_ROLE
IDP_CLAIM
When an identity provider is having claims that are different from the
local claims of MWARE IAM, the corresponding claims of the
identity provider can be mapped to the local claims where the identity
provider claims are stored in this table. The mapping details of the
local claims are stored in the IDP_CLAIM_MAPPING table. Following are the
columns of the table.
IDIDP_IDTENANT_IDCLAIM
IDP_CLAIM_MAPPING
The mappings of the local claims with the identity provider claims are
stored in this table.The IDP_CLAIM_ID column has the identity provider’s
claim ID which points to the ID column of the IDP_CLAIM table.
The LOCAL_CLAIM column contains the claim value of the local claim in the
mapping. Following are the columns of the table.
IDIDP_CLAIM_IDTENANT_IDLOCAL_CLAIMDEFAULT_VALUEIS_REQUESTED
IDP_AUTHENTICATOR
The local and federated authenticators for each identity provider are
stored in this table. The NAME column contains the name of the
authenticator. IDP_ID is the identity provider’s ID which points to the
ID column of the IDP table. Following are the columns of the table.
IDTENANT_IDIDP_IDNAMEIS_ENABLEDDISPLAY_NAME
IDP_AUTHENTICATOR_PROPERTY
The properties related to the authenticators stored in the
IDP_AUTHENTICATOR table are stored in this table. The properties are
stored as key value pairs in PROPERTY_KEY and PROPERTY_VALUE tables
respectively. The associated authenticator ID is given in the
AUTHENTICATOR_ID column which points to the ID column of the
IDP_AUTHENTICATOR table. Following are the columns of the table.
IDTENANT_IDAUTHENTICATOR_IDPROPERTY_KEYPROPERTY_VALUEIS_SECRET
IDP_PROVISIONING_CONFIG
The outbound provisioning connector details for each identity provider
is stored in this table. The identity provider’s ID is given in the
IDP_ID column which points to the ID column of the IDP. The provisioning
connector type is given in the PROVISIONING_CONNECTOR_TYPE column.
Detailed configuration for each type of provisioning connector is stored
in the IDP_PROV_CONFIG_PROPERTY table. Following are the columns of this
table.
IDTENANT_IDIDP_IDPROVISIONING_CONNECTOR_TYPEIS_ENABLEDIS_BLOCKING
IDP_PROV_CONFIG_PROPERTY
The properties for each provisioning connector are stored in this table
as key value pairs in the PROPERTY_KEY and PROPERTY_VALUE columns
respectively. PROVISIONING_CONFIG_ID is the ID of the provisioning
connector in the IDP_PROVISIONING_CONFIG table. Data type of the property
is stored in the PROPERTY_TYPE column. Following are the columns of the
table.
IDTENANT_IDPROVISIONING_CONFIG_IDPROPERTY_KEYPROPERTY_VALUEPROPERTY_BLOB_VALUEPROPERTY_TYPEIS_SECRET
IDP_PROVISIONING_ENTITY
When outbound provisioning is enabled for an identity provider and a
user or a group is created in MWARE IAM, this table stores
records such that PROVISIONING_CONFIG_ID contains the ID of the
provisioning config that points to the ID column of the
IDP_PROVISIONING_CONFIG table. The ENTITY_TYPE column contains the type
of the entity whose values can be either USER or GROUP. The userstore of MWARE IAM where the user or group is created is added to
ENTITY_LOCAL_USERSTORE column. ENTITY_NAME contains the name of the
user or role created in MWARE IAM. ENTITY_VALUE contains the
unique identifier of the user or group created at the external
provisioned identity provider.
IDPROVISIONING_CONFIG_IDENTITY_TYPEENTITY_LOCAL_USERSTOREENTITY_NAMEENTITY_VALUETENANT_ID
IDP_LOCAL_CLAIM
This table is not used in the latest version of MWARE IAM.
IDTENANT_IDIDP_IDCLAIM_URIDEFAULT_VALUE-
IS_REQUESTED