[Info-vax] : AUTHORIZE Enhancement

Stephen Hoffman seaohveh at hoffmanlabs.invalid
Wed Nov 30 17:41:29 EST 2016


On 2016-11-30 02:06:30 +0000, Kerry Main said:

> You do not have to replace MS AD - simply integrate with it just like 
> any other Directory ...

That's the theory, certainly.   Most sites will integrate LDAP clients 
with Microsoft Active Directory or their chosen directory platform, and 
won't attempt or variously won't allow heterogeneous LDAP servers.   
For various and often very good reasons, too.   Though some folks do 
use more complex configurations, including hosted LDAP: 
https://azure.microsoft.com/en-us/services/active-directory/   But for 
most places, the chances of getting permission to bind some "random" 
LDAP server such as OpenVMS Enterprise Directory with the local 
Microsoft Active Directory configuration is... low.

The other boxes I work with require couple of mouse clicks and a 
password and the client is bound to the directory, or push a few 
commands or an install-time script and bind that way.  Setting up and 
launching the base-OS-integrated LDAP server is about as difficult, too.

For some sites, OpenVMS can play a (more) central role in 
authentication...   But for many of the sites I deal with, OpenVMS 
needs to (easily) coexist, and to operate with the fewest added 
configuration requirements.




-- 
Pure Personal Opinion | HoffmanLabs LLC 




More information about the Info-vax mailing list