Administration Guide¶
This section covers everything you need to deploy, configure, and maintain JIM in a production environment.
Sections¶
-
How every list in the portal behaves: continuous scrolling instead of paging, object counts, search and sorting across the whole list, and links that open where you left off.
-
Hardware requirements, architecture overview, connected and air-gapped installation procedures on Docker or Podman, TLS configuration, health monitoring, and the production readiness checklist.
-
JIM on Podman, the container engine Red Hat supports on RHEL: how it runs under systemd, rootful or rootless, day-to-day operation, firewall and SELinux, and installing by hand.
-
Deploying JIM across RHEL servers with Red Hat's podman system role, from the same files the installer uses.
-
Step-by-step instructions for configuring OIDC authentication with Microsoft Entra ID, AD FS, or Keycloak, including testing procedures and security considerations.
-
The defence-in-depth response headers JIM sends on every request, including the Content Security Policy, and what to know if you sit JIM behind a reverse proxy or corporate web proxy.
-
The authentication activity JIM records in its Activity log: interactive sign-in success and failure, and API key authentication failure, with its retention and SIEM integration.
-
What a Preview feature is, where to turn one on, and what to expect from a feature that is still being rolled out.
-
Complete environment variable reference organised by category: database, authentication, logging, user identity mapping, and performance tuning.
-
Procedures for upgrading JIM in connected and air-gapped environments, including pre-upgrade backups, pausing Schedules, verification, and rolling back.
-
What to back up (database plus encryption keys, as a matched pair), how to take and restore a backup, securing key backups, and recovery expectations if keys are lost.
-
Common issues and resolutions for deployment, authentication, synchronisation, and connectivity problems.