Posted by: Anonymous Coward
on January 05, 2005 10:57 AM
You're absolutely correct that authentication is not the same as directory services. One is an action, and one is the source that the action is performed against.
That said...keep in mind all of the applications that are installed out there that want to use their own schema additions, etc. They are frequent. Microsoft is not going to support them, but if you upgrade, your schema information should be pulled from your previous device anyway.
And no, AD would not be fully LDAPv3 compliant. They are Microsoft, after all...
By doing the synchronization, you run into other problems, such as management of updates back and forth. The quality of your identity management tools come into play, then. Personally, I think that you are better off to use a single source. But, that's just me. You don't have to worry about the synchronization of your data if you've only got one source.
Re:directory services
Posted by: Anonymous Coward on January 05, 2005 10:57 AMThat said...keep in mind all of the applications that are installed out there that want to use their own schema additions, etc. They are frequent. Microsoft is not going to support them, but if you upgrade, your schema information should be pulled from your previous device anyway.
And no, AD would not be fully LDAPv3 compliant. They are Microsoft, after all...
By doing the synchronization, you run into other problems, such as management of updates back and forth. The quality of your identity management tools come into play, then. Personally, I think that you are better off to use a single source. But, that's just me. You don't have to worry about the synchronization of your data if you've only got one source.
#