JD,

I have some thoughts to add to the CAC puzzle.  

I would expect you to log into a Windows desktop using your smartcard,
identifying you as an authenticated user with an account in the Active
Directory, and then access the Midtier using integrated Windows
authentication (IWA), ie. signing on in a secure fashion that, if not
secure, would imply every Windows network is insecure.  If your
organisation uses Sharepoint then it's likely you're already using IWA,
so accessing Midtier in this way is no different to accessing
Sharepoint.

I've looked at the devtech solution and it's not a plugin for the
Midtier but the Windows User Tool, which is an entirely different
problem.  It also uses a Java AREA Plugin, which means it can't be put
on the areahub and used in conjunction with the BMC AREA LDAP plugin (or
at least, if the design hasn't changed in 7.6.04).  Nice work though
devtech, a good set of example code.


John

_______________________________________________________________________________
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
attend wwrug11 www.wwrug.com ARSList: "Where the Answers Are"

Reply via email to