As part of our conversion to using LDAP against AD instead of a custom 
validator, I am thinking of the following and would like to run it by the group.

I am planning on using the FastBindLdapAuthenticationHandler since I only have 
one OU (People) in which to look and I don't need to any special searchs.

I am planning on retrieving attributes to be passed back via saml.

There will be two different contextSource's: one for 
FastBindLdapAuthenticationHandler and one for LdapPersonAttributeDao.

Does it makes sense and is it supported to use connection pooling for 
LdapPersonAttributeDao?

Also, does this setup seem like an appropriate setup, or should I consider 
using BindLdapAuthenticationHandler for Authentication.

BTW, I have not upgraded past 3.4.6 yet.

Thank you!
-John

-- 
You are currently subscribed to [email protected] as: 
[email protected]
To unsubscribe, change settings or access archives, see 
http://www.ja-sig.org/wiki/display/JSG/cas-user

Reply via email to