Using Windows Accounts In Laserfiche In A Novell eDirectory Environment

February 7, 2007 | KB: 1011747
Laserfiche Server - Team (MSDE) 7, Laserfiche Server - United (MS SQL) 7, Laserfiche Server - United (Oracle) 7

Summary

If you use Novell eDirectory for authentication, you can synchronize your eDirectory accounts with Windows Active Directory accounts. This allows you to log in using eDirectory, and then use that authentication to automatically access the repository as if you had logged in using a Windows account.

Workaround

First, you will need to install and set up Novell eDirectory if you have not already done so. You will also need to install and set up Windows Active Directory Server on the same domain. For more information on these steps, please see the information provided by Novell and Microsoft, respectively.

Then, you will need to duplicate all Novell eDirectory users that you plan to use in Laserfiche in Windows Active Directory. Make sure they have the same name. For instance, if there is a user named JSMITH in E-Directory, be sure to create a user named JSMITH in Active Directory.

Tip: Certain third-party tools exist to automate this process. For one starting place, see IDM Synchronization Between eDirectory and AD. Note that this application is not supported by Laserfiche.

When you first log in to Novell eDirectory, you will be given the option to synchronize your Active Directory password for the specified user with the existing eDirectory password for this user. This will prevent you from needing to change the password in Active Directory whenever you change it in eDirectory. Instead, you will be able to make changes in the password in E-Directory and have them automatically change for the relevant Active Directory user as well.

You can then set up Windows Accounts in the Laserfiche Administration Console as normal. Then, when you log in using eDirectory, you can use Windows Authentication to automatically access the repository as if you had logged in using a Windows account.

Note: With the exception of passwords, which will be automatically synchronized, you will need to keep Windows Active Directory updated to reflect changes in Novell eDirectory. If you add, remove or rename a user in eDirectory, be sure to add, remove or rename that user in Windows Active Directory as well. (If you are using a third-party synchronization tool, you may not need to perform additional synchronization steps.)

More Information

For more information about Novell eDirectory, please see Novell eDirectory Support on the Novell web site.

For more information about Active Directory, please see Windows Server 2003 Active Directory on the Microsoft web stie.