Previous Topic: Policy Processing for Unauthorized Users

Next Topic: Enterprise Policy Management

Directory Mapping for Hierarchical Policies

In a SiteMinder configuration that contains nested realms, each realm may contain a directory mapping which specifies an authorization directory to be used which is different from the authentication directory. This allows companies to use a single directory for authenticating users, while distributing authorization directories throughout an enterprise. When the Policy Server processes entitlements in a group of nested realms, the it checks for directory mappings for each realm in the hierarchy. If there is no directory mapping, the Policy Server uses the authentication directory as the authorization directory.


Copyright © 2010 CA. All rights reserved. Email CA about this topic