IBM Verify

IBM Verify

Join this online user group to communicate across Security product users and IBM experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.

 View Only
  • 1.  Using local vs remote LDAP

    Posted Thu January 28, 2021 02:35 PM
    When configuring the Policy Server, I can choose to use a local LDAP or remote LDAP.
    What option should I use?
    Why would I need to use a remote LDAP? After all, the users can become available if I federate any supported LDAP server!

    ------------------------------
    Joao Goncalves
    Pyxis, Lda.
    Sintra
    +351 91 721 4994
    ------------------------------


  • 2.  RE: Using local vs remote LDAP

    Posted Thu January 28, 2021 03:06 PM
    Joao,
     
    The local LDAP is only designed for a small number of users, or for basic users.  So, if your user base is large and you are not able to use basic users you should be using a remote LDAP.
     
     

    Scott A. Exton
    Senior Software Engineer
    Chief Programmer - IBM Security Verify Access

    IBM Master Inventor


    Phone: 61-7-5552-4008
    E-mail: scotte@au1.ibm.com
    1 Corporate Court
    Bundall, QLD 4217
    Australia
     
     





  • 3.  RE: Using local vs remote LDAP

    Posted Fri January 29, 2021 05:27 PM
    Hi Scott and João,

    Can i use basic users and remote LDAP? for example, i'm using remote LDAP with ISDS and i need configure Active Directory as federated directory.

    Regards,

    ------------------------------
    Alexandre Gammaro
    CyberSecurity Especialist
    Triscal - agammaro@triscal.com.br
    ------------------------------



  • 4.  RE: Using local vs remote LDAP

    Posted Fri January 29, 2021 06:03 PM
    Edited by Joao Goncalves Fri January 29, 2021 06:03 PM
    Of course you can. Just make sure you don't have conflicts with username between the registries. You can have multiple federated repositories.

    ------------------------------
    Joao Goncalves
    Pyxis, Lda.
    Sintra
    +351 91 721 4994
    ------------------------------



  • 5.  RE: Using local vs remote LDAP

    Posted Sat January 30, 2021 04:20 PM
    Alexandre,

    Yes, you can use a remote LDAP with basic users.  You just need to ensure that the remote LDAP is a supported LDAP server.

    Thanks.