IBM Verify

IBM Verify

Join this online user group to communicate across Security product users and IBM experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.

 View Only
Expand all | Collapse all

Is it possible to change LDAP Server from current IBM TDS to Microsoft AD , and we have a lot of groups Defined

  • 1.  Is it possible to change LDAP Server from current IBM TDS to Microsoft AD , and we have a lot of groups Defined

    Posted Fri September 03, 2021 12:24 PM

    we are looking for a solution where we have lot of groups defined in the TDS and we want to change without any impact



    #Support
    #SupportMigration
    #Verify


  • 2.  RE: Is it possible to change LDAP Server from current IBM TDS to Microsoft AD , and we have a lot of groups Defined

    Posted Fri September 03, 2021 12:35 PM

    You cannot just change - first you will need to move the groups to your AD (create/add members). You must also ensure that users in the ldap are created in AD with the same ID - this may sound trivial - but in the real world this is very often not the case.

    I really do not understand (beside removing an infrastructure component) why you would do this - there must have been a reason you chose ISDS in the first place.

    Be aware - even though Windows AD is ldap based it is not a completely standard ldap server implementation - this may or may not have consequences in your situation.

    HTH

    Regards

    Franz Wolfhagen



    #Support
    #SupportMigration
    #Verify