!!! WARNING !!!
Once you turn on the LDAP SYNC, your local setting groups with screen settings will save to your local database. All new user groups will be pulled from your AD server, you can switch back to local groups at any time, but only one type of group can be applied by the Client.
Active Directory / Directory Service (AD/DS)
AD/DS is one of the most famous directory services. With AD/DS and 3rd party software (see CCM), the IT admin can configure each user to have more than one banner setting (color/text) that depends on the currently signed-in user security group. (e.g., there are two different security environment projects assigned to user A at the same time. However, he is only working on one project at a time. He can swap the user’s AD/DS user security group via a 3rd party group change software/script, then sign off and sign back into the user profile. CICB will apply the banner setting according to the IT admin and user security settings.)
!!! WARNING !!!
Users should only be assigned to one SG at a time. But, if a user is assigned to both AD SG-1 and AD SG-2, then SG-1 won by alphabetical order. AD SGs cannot be empty otherwise it will not sync with the Server.
Light Weight Access Portal (LDAP)
The Server can connect to any directory service that follows the standard LDAP protocol.
Here are some examples of software that supports LDAP:
- Active Directory Directory Service (AD/DS)
- Apache Directory
- Open LDAP
- Univention Corporation Server (UCS)
- Lepide Auditor for Active Directory
- 389 Directory Server
- Red Hat Directory Servers
- SME Server
- Resara Server
- Sun Java System Directory Server
- IBM Tivoli Directory Server
- Windows NT Directory Services
- Lotus Domino
Use Case Example
Refer to CCM for more details.