CHAPTER 1: INTRODUCTION AUTHENTICATION OPERATIONS

Authentication Operations

R3000 Authentication Protocols

The R3000 supports two types of authentication protocols: Windows NT LAN Manager (NTLM), and Lightweight Direc- tory Access Protocol (LDAP).

NTLM authentication supports NTLM authentication running on any of the following servers: Windows NT 4.0, Windows 2000 Mixed Mode, and Windows 2003 Mixed Mode.

LDAP authentication supports all versions of LDAP, such as Microsoft Active Directory, Novell eDirectory, Sun ONE, and OpenLDAP.

R3000 Authentication Tiers

The R3000 authentication architecture for NTLM and LDAP authentication protocols is comprised of three tiers. When using NT and/or LDAP authentication with the R3000, one of these three tiers is selected for use on the network, depending on the server(s) used on the network and the preferred authentication method(s) to be employed.

Tier 1: Single sign-on, net use based authentication for NT or Active Directory domains.

Tier 2: Time-based, Web authentication for NT and LDAP authentication methods.

Tier 3: Session-based, Web authentication for NT or LDAP authentication method.

When using Tier 2 or Tier 3, the 8e6 Authenticator should be enabled to ensure the end user is authenticated when logging into his/her workstation. Or if using a Novell eDirec-

8E6 TECHNOLOGIES, R3000 ENTERPRISE FILTER AUTHENTICATION USER GUIDE

23

Page 35
Image 35
8e6 Technologies manual Authentication Operations, R3000 Authentication Protocols, R3000 Authentication Tiers