Viewing 2 posts - 1 through 2 (of 2 total)
  • Author
    Posts
  • #362944
    mkalien
    Participant

    We have applications that only read user attributes. Anyone have a recommended way of showing group membership here? Specifically a multi-valued attribute?

    I thought of using the groupMembership attribute since it’s pre-defined but I don’t know how to make it available for users (without editing someone else’s schema.conf file).

    #362959
    mkalien
    Participant

    They are “smaller” applications. I could be wrong, but from everything I’ve looked at they only seem to map user attributes to the application for roles/permissions. So far, I’ve found Webhelpdesk, Blue socket (wireless authentication), and pgina seem to work this way.

    In a sense it doesn’t matter too much, when we move our PCs off of pgina and over to AD, this won’t be an issue. If we get Cisco’s ACS (I think that’s the name) up, we won’t need Blue Socket.

    I just wondered what best practice was.

Viewing 2 posts - 1 through 2 (of 2 total)
  • You must be logged in to reply to this topic.

Comments are closed