LDAP for Password Verification

StarTeam can use directory services (either Microsoft Active Directory or OpenLDAP) to perform password authorization. As users log on, they enter their StarTeam user name and their directory service password. Before allowing the users to access the server, StarTeam then checks a directory service for valid passwords.

LDAP Quickstart Manager is a utility that allows you to import information about people from a directory service or LDIF file into a StarTeam Server as user properties. LDAP Quickstart Manager makes it easy to maintain the DNs and other directory service information that you choose to store in StarTeam Servers.

To set up directory service authentication in StarTeam, you set options on the Directory Service tab of the Configure Server dialog. These options enable directory service support and provide information about accessing the service. In addition, you use the User Manager to set options for the individual users whose passwords are to be authenticated. Not all users need to use this feature.

The distinguished name (DN), a unique identifier, is used by Micro Focus servers as they communicate with the directory service. For example, StarTeam must send each user’s distinguished name (DN) to the directory service in order to verify the user’s password. DNs can be long and not very intuitive. Also, some organization’s change DNs occasionally, and updating these changes by hand can be very tedious.

When you import users using LDAP Quickstart Manager, you indicate whether new users will have their passwords authenticated by the StarTeam Server or by a directory service by selecting either the Validate Password Through Directory Service or the Validate Password Through StarTeam Server option button. StarTeam Servers request directory service validation of user passwords if the server configuration both allows directory service validation and has the correct connection settings for the directory service.