Developer forum

Forum » Feature requests » Active Directory Integration

Active Directory Integration


Reply

Hi,

 

When using Dynamicweb for an Intranet i'd like to see a thorough Active Directory integration.

 

The way I think it should work:

 

Import users and/or groups from Active Directory
As an administrator you should be able to import a (selected) set of users and/or groups from the AD to the Dynamicweb user database.

 

Single-sign/on
When when Windows Integration is enabled on the IIS website, try to link the current Identity to one of the users in the DW database.

 

 

I know the above is possible by writing a custom module, but it would nice to have it as a standard module in Dynamicweb.

 

Kind Regards,

Emil


Replies

 
Reply
Emil Muller wrote:

Hi,

 

When using Dynamicweb for an Intranet i'd like to see a thorough Active Directory integration.

 

The way I think it should work:

 

Import users and/or groups from Active Directory
As an administrator you should be able to import a (selected) set of users and/or groups from the AD to the Dynamicweb user database.

 

Single-sign/on
When when Windows Integration is enabled on the IIS website, try to link the current Identity to one of the users in the DW database.

 

 

I know the above is possible by writing a custom module, but it would nice to have it as a standard module in Dynamicweb.

 

Kind Regards,

Emil


AD integration is already available, however, when enabled it runs strictly validations, hence you have oportuniy for performing any administration of the users, and that's probably what you're refering to? But the verification is in place.

 
Reply

Hi Lars,

 

Yes I know that you already have some sort of Active Directory Integration. But i think it's a poor implementation.

 

From what I can see you only support authentication based on AD groups, and then limit access to a page or pages. (correct me if i'm wrong)

 

Your current standard implementation does not integrate with the existing cms users and/or extranet users.

 

I just think it can use some improvement ;-)

 

Regards,

Emil

 

 
Reply

Agreed:)

 

So you suggest we make on a reference between an AccessUser record and the SSID of the AD user, so we still maintain the DW users?

 
Reply
Sorensen wrote:

Agreed:)

 

So you suggest we make on a reference between an AccessUser record and the SSID of the AD user, so we still maintain the DW users?


Yes, exactly.

 

 

 
Reply

Sounds reasonable:)