Re: Authorization Manager (AzMan) and non-Windows users
From: Roger Abell (mvpNOSpam_at_asu.edu)
Date: 03/31/05
- Next message: A Mackie: "Re: Authorization Manager (AzMan) and non-Windows users"
- Previous message: Roger Abell: "Re: Windows 2K/XP/2K3 password question"
- In reply to: A Mackie: "Re: Authorization Manager (AzMan) and non-Windows users"
- Next in thread: A Mackie: "Re: Authorization Manager (AzMan) and non-Windows users"
- Reply: A Mackie: "Re: Authorization Manager (AzMan) and non-Windows users"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Thu, 31 Mar 2005 02:18:27 -0700
"A Mackie" <andrew@mackie14.freeserve.co.uk> wrote in message
news:xn0e0bzzn83qzn000@news.microsoft.com...
> Roger Abell wrote:
> > Doesn't it depend on which schemas you have in use?
> > AFAIK one can use applicatively defined (web app internal)
> > identities, and have these grouped for role associations, which
> > then lets them assume a Windows identity used for the role
> > when needed to go to resources.
>
> I'm not sure I fully understand your answer. Do you mean:
>
> Web-application will maintain it's own user-id's/passwords in it's own DB.
> A Windows id will be created to represent one or more web-app id's
> (one Window's ID per category of web-users).
> Windows id's can be assigned to roles using Azman GUI.
> At runtime, web-application somehow maps web-app id to a windows-id (e.g.
> certificate mapping ?), then makes call to azman's AccessCheck using
> windows-id.
>
> Does that sound about right ?
>
> Thanks,
> Andy Mackie.
Roughly yes. I have not prog'd it but have been through a
few walk throughs where that is essentially what was done.
App internal ids, via app partition supported group, mapped
to a Windows identity with AzMan role definition for the group.
-- Roger
- Next message: A Mackie: "Re: Authorization Manager (AzMan) and non-Windows users"
- Previous message: Roger Abell: "Re: Windows 2K/XP/2K3 password question"
- In reply to: A Mackie: "Re: Authorization Manager (AzMan) and non-Windows users"
- Next in thread: A Mackie: "Re: Authorization Manager (AzMan) and non-Windows users"
- Reply: A Mackie: "Re: Authorization Manager (AzMan) and non-Windows users"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|
|