This forum is closed to new posts and
responses. Individual names altered for privacy purposes. The information contained in this website is provided for informational purposes only and should not be construed as a forum for customer support requests. Any customer support requests should be directed to the official HCL customer support channels below:
RE: Sametime and Directory Assistance Question ~Sanjay Lopnibergakoi 7.May.10 02:26 PM a Web browser Administration 8.0.2Windows
Yes - it will function as you mention if you simply use directory assistance for AD - the problem you will have is that if the user authenticating is in the NAB, then it will use that user account to authenticate BEFORE the AD accessed through DA.
The way this all works is that web access to Sametime (for Admin and ST "classic" meeting) uses the Domino authentication mechanism, which is firstly the NAB and then any alternative directories configured using Directory Assistance. The community (ST Client) access is authenticated in a different way through the Sametime server (a "black box" method) using either the local NAB or an LDAP server depending on how you set it up in the beginning (This is changeable - see info center on how to do that).
So IMHO if you want to use AD for authentication, you should switch to using LDAP rather than the NAB for ST client authentication, remove all the users from the local NAB (be careful as you don't want that to replicate all the deletes) and then use DA to the AD via LDAP too.
There may be a way to force DA to read from the AD via LDAP before it even accesses the local NAB (which would allow you leave the local NAB as it was) - someone else care to comment on that?
If you need any clarification, contact me at andy@imcollaboration.com