Dear Radhika,

You can configure multiple BMC AREA LDAP plugins and the only infrastructure 
requirement is the AR System needs to bind to the Active Directory via LDAP, so 
port 389. There is nothing complex in terms of trusts etc. and you must be 
careful to guard against 'user credential' leak.

If your clients are different organisations, the BMC AREA LDAP plugin will 
iterate through the list of configured ADs sending the user credentials to 
each. This means that company A could log all requests (ie username & password) 
and if there are three companies configured (A, B and C), company A can collect 
credentials for company B & C.

So the management summary is, you don't want to deploy the BMC AREA LDAP if 
you're a multi-service provider with multiple clients.


John

-- 
Single Sign On for AR System
http://www.javasystemsolutions.com/jss/ssoplugin

_______________________________________________________________________________
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
attend wwrug11 www.wwrug.com ARSList: "Where the Answers Are"

Reply via email to