Portal, Express Beta Version 6.1
Operating systems: i5/OS, Linux,Windows |
When the portal authenticates against a non-Lotus Domino LDAP user directory such as IBM® Tivoli® Directory Server, and Lotus® Collaborative Services authenticates against a Lotus Domino LDAP directory, administrators must perform tasks to synchronize names across the directories to support single sign-on.
There are two methods for synchronizing the directories. The portal LDAP administrator can extend the LDAP schema and set up Domino Directory Assistance, or the Lotus Domino administrator can run agents to populate all Person documents in the Domino Directory with the distinguished user name used by the portal for login. You can select the method that best fits the resources of your site. Keep in mind that extending the schema and setting up Directory Assistance has the benefit of matching user passwords that might otherwise require additional tasks to reconcile.mailserver=mailserver.domain.com mailfile=mail/usermail.nsf
For example, if the portal user LDAP directory is Tivoli Directory Server, and a user's distinguished name in the portal is: uid=wpsadmin,cn=users,dc=acme,dc=com then the agent needs to add uid=wpsadmin/cn=users/dc=acme/dc=com to the User Name field of the Person document.