Re: ADAM AZMan Question

From: Roger Abell (mvpNOSpam_at_asu.edu)
Date: 07/22/04

  • Next message: David Beaven: "Problem publishing crl on EntCA"
    Date: Wed, 21 Jul 2004 23:46:57 -0700
    
    

    I believe the answer is yes, Ldap query based roles in
    AzMan can be mapped onto a principal.
    However some of what you have indicated is unclear
    as use of Adam userProxy seems to me to imply that
    you already have mapped from AD accounts to Adam
    users, so mapping back seems unneeded. If the users
    are strictly Adam objects AzMan may be used to map
    groups of these to single AD principal fur use in/by the
    web application.

    -- 
    Roger Abell
    Microsoft MVP (Windows Server System: Security)
    MCSE (W2k3,W2k,Nt4)  MCDBA
    "Jims" <biz@neocasa.net> wrote in message
    news:%23567kfybEHA.596@TK2MSFTNGP11.phx.gbl...
    >
    >  Authorization manager can store application information in ADAM.  Can
    > AZman work with ADAM users?  For instance; userProxy objects (users) in
    ADAM
    > and leverage their individual attributes for LDAP filter based AZMan
    roles?
    > We would like to use AZman to control authorization for .net web apps for
    > users that would be in an ADAM directory.
    >
    > Thanks,
    > Jim S.
    >
    >
    

  • Next message: David Beaven: "Problem publishing crl on EntCA"

    Relevant Pages

    • Re: ADAM : Beginner and need help
      ... AzMan probably isn't a good solution for Java, but the AzMan design might be ... ADAM also supports the AD "tokenGroups" attribute which can be used to ... Co-author of "The .NET Developer's Guide to Directory Services Programming" ... ADAM can also support lots of password policy features that Windows ...
      (microsoft.public.windows.server.active_directory)
    • ADAM with Azman
      ... activedirectory membership provider to speak to one ... Ideally ADAM will be the user/group repository and Azman ... construct a clientContext using the SID of the authenticated ADAM user. ...
      (microsoft.public.windows.server.active_directory)
    • nightmare with ADAM ldap and roleprovider
      ... activedirectory membership provider to speak to one ... Ideally ADAM will be the user/group repository and Azman ... ActiveDirectoryMemberShipProvider based code to ...
      (microsoft.public.dotnet.security)
    • Re: Bug in ADAM/AzMan integration? Roles placed in AzTaskObjectContain
      ... > in an ADAM partition. ... AzMan MMC and the role was created in the AzRoleObjectContainer ... > an AzMan store in ADAM. ...
      (microsoft.public.windows.server.active_directory)
    • ADAM - AZMan interop question
      ... "McPherson" I think but was unable to track him down. ... Authorization manager can store application information in ADAM. ... AZman work with ADAM users? ...
      (microsoft.public.windows.server.active_directory)