Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  • iShare makes use of existing proven Windows and Active Directory technology to authenticate the user.
  • Seamless integration into the browser - no username/password prompt.
  • Reuse of existing user hierarchy from the domain.
  • Familiar tools and utilities for user management.

Beware of Local users with the same name as Domain users

If the iShare GIS server has Local users with the same name as Domain users it can cause issues with iShare GIS when it comes to determining if a user has access to Map Sources with Roles. In some instances Map Sources with Roles are not available to users even when their Domain user is a member of the appropriate group. To resolve the issue either arrange for the Local users to be renamed or removed or add the Local and Domain user to the relevant groups.

Requirements

Domain membership: In order to make use of Windows Authentication, the server that the iShare front-end Web application must be able to authenticate the members of the local groups that are configured on the server that the back-end Web Service application runs on -- e.g. be a member of the same domain or be a member of a domain that is trusted by the internal server's domain. This is not an issue when both applications are run on the same server.

...