Re: ADAM - SSO and provisioning considerations



Thanks Joe! That's exactly what I needed to know.

As far as account/password sync goes: I agree - not a good solution.
Especially since it would need to be a custom job for each different
store / authentication scheme.

That leaves me in a bit of a bind though (no pun intended). If not
ADAM, then what? :-(

I suppose another way to go would be to go ahead with ADAM, but if the
customer's identity store is a non-MS directory, then they will have to
get the accounts into ADAM and live with multiple identity stores and
all that that involves...that scenario is far better than what we have
now. And I'm guessing that the majority of our customers use AD.

Thanks for all the advice!

- Rob

.



Relevant Pages

  • Re: ADAM - SSO and provisioning considerations
    ... install an OU, do LDAP bind's to AD for authentication, and used some ... The above illustrates why you don't need ADAM. ... store for your identity store. ... they are all in the customer's identity store. ...
    (microsoft.public.windows.server.active_directory)
  • Re: ADAM and LDAP question
    ... My instincts tell me you really can use either store and it will work. ... does seem a little bit more of a natural fit though. ... to hear if you end up using ADAM for the data store for this, ... We used Admin account for everything. ...
    (microsoft.public.windows.server.active_directory)
  • Re: Extending Active Directory using Attributes and XML
    ... The information I am trying to store is based on the user specifically. ... single user on the 3rd party system. ... user will never know they have all these passwords codes etc. ... Thank you for advice so far but I haven't really grasped ADAM and may ...
    (microsoft.public.windows.server.active_directory)
  • Re: What is the best approach to the following situation?
    ... authorization system that derives role information from some sort of store. ... users in your ADAM store and create application-specific groups in ADAM that ... you simple use an ADAM LDAP bind for your Forms authentication ... application-managed authentication and authorization in web applications. ...
    (microsoft.public.windows.server.active_directory)
  • Re: ADAM - SSO and provisioning considerations
    ... What if we use ADAM, but don't store the identities ... they are all in the customer's identity store. ... I see the group membership problem as much easier to solve. ...
    (microsoft.public.windows.server.active_directory)

Loading