User Naming for SSO

One of the most important items to consider when designing a Domino and WebSphere SSO configuration is how users will be named, or, more specifically, how the user entries in the user directory will be named. A user name is the primary data involved in authentication and authorization mechanisms. For authentication, a user name supplied by the user either via a login prompt (for basic authentication) or via a client certificate (for SSL client certificate authentication) is validated against the user registry. The following user name issues often arise when designing SSO applications:

  • Uniqueness. Obviously, user names must uniquely represent clients. This becomes more difficult as the number of users increase.

  • Format. Users ...

Get IBM WebSphere and Lotus Implementing Collaborative Solutions now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.