Re: Authentication Using ADAM ?



I don't gather nor maintain a list of them.

--
Joe Richards Microsoft MVP Windows Server Directory Services
Author of O'Reilly Active Directory Third Edition
www.joeware.net


---O'Reilly Active Directory Third Edition now available---

http://www.joeware.net/win/ad3e.htm



Vicky wrote:
Dear Joe,

Could you give the names of few third party applications that would rely on ADAM for authenticating users as well as store application data in ADAM

"Joe Richards [MVP]" wrote:

Those service all require Windows or Domain authentication by default, ADAM provides ADAM authentication only which is useful inside of ADAM or for applications that don't need Windows auth (i.e. they just need a password authenticated, they don't need a security token usable outside of ADAM).

Anything where you can insert yourself into the auth process you have the ability to call out to ADAM to perform the auth. So for example, with IIS, you could use anonymous auth within the app but still ask for userid and password in a form and send those as an LDAP Req to ADAM. Alternatively you could use a subauthentication DLL that does something similar. Either way, that would kind of suck because LDAP is not an auth protocol, it is a data access protocol that just happens to have to support a form of auth so you can have relatively secure access to the data.

joe


--
Joe Richards Microsoft MVP Windows Server Directory Services
Author of O'Reilly Active Directory Third Edition
www.joeware.net


---O'Reilly Active Directory Third Edition now available---

http://www.joeware.net/win/ad3e.htm



Vicky wrote:
Hi All,

Just wish to know if i could use ADAM in a workgroup, instead of AD in a windows domain based network to have user authentication performed for windows services (running on win 2000/2003 server) such as RAS, VPN, IIS, CA, TS, Remote Desktop + many other windows services etc

Thanks

Vicky
.



Relevant Pages

  • Re: Changing the default account lockout message
    ... Joe Richards Microsoft MVP Windows Server Directory Services ... aDAM wrote: ...
    (microsoft.public.win2000.active_directory)
  • Re: How to limit the origin of NET SEND
    ... MS hasn't provided a replacement, however someone could code their own if they ... If you go back to the December 1999 Windows ... Joe Richards Microsoft MVP Windows Server Directory Services ...
    (microsoft.public.windows.server.security)
  • Re: ADAM Set password to NOT expired
    ... Joe Richards Microsoft MVP Windows Server Directory Services ... In AD and ADAM, I can set pwdlastset=0 to make the password expire.. ...
    (microsoft.public.windows.server.active_directory)
  • Re: Password policy
    ... Windows porgramming as you can induce instability and insecurity in your domain ... I tried to figure out the filters, ... >>Joe Richards Microsoft MVP Windows Server Directory Services ...
    (microsoft.public.security)
  • Re: Prevent accidental file deletion
    ... Joe Richards Microsoft MVP Windows Server Directory Services ...
    (microsoft.public.security)