Changes

Jump to: navigation, search

Primary Authentication Controller

1,565 bytes added, 00:51, 28 September 2010
no edit summary
===All Users to All Users===
If '''Allow All Users''' is enabled on the '''Authentication Member''' instance you can set up an All Users to All Users setting. This configuration will look for an enabled user account on the Authentication Member instance that matches the e-mail address of the person logged into the PAC.
:[[File:PACallusers.png]]
* This is the most common setting, as there is a one-to-one relationship between accounts in each instance.
* If a user on the PAC does not exist or is not enabled on the Authentication Member the user will either be denied access or a new account created, depending on the '''Create Users if not found''' setting in the Member Controller as described above.
===Named User to Named User===
If only a select number of users on the PAC are permitted to connect to the Authentication Member instance you must define each permitted user individually.
:[[File:PAConeTOone.png]]
* ''If All Users is enabled on the Member server you can select the individual user in the PAC User field and select the specific user in the Authentication Member User field, or set the Member User to '''All Users'''. The result will be the same as the PAC will try to match the PAC selected user's e-mail address with an enabled user with the same e-mail address on the Member Server.
* If the User isn't listed in the Member server field, but Create users if not found is enabled on the member you can select All Users as the Member user and the account will be created on the member the first time the named user on the PAC attempts to connect to the Member instance.
* Named User to Named User can also be used to connect accounts with different e-mail addresses on each instance
:[[File:PACmismatch.png]]
 
* You can configure multiple accounts on the PAC to connect to the same account on the member
:[[File:PACmanytoone.png]]
*''Note: each account can only be logged in at one workstation. Thus if one account is connected to the member using the shared account, if/when a second person logs in to the member with the same account (whether via the PAC or by logging in directly via the Login Page they will disconnect the first user. Accordingly caution should be used when using this configuration of sharing an account on the member server.
==Auditing==
0
edits

Navigation menu