cancel
Showing results for 
Search instead for 
Did you mean: 

Portal with multiple different LDAPs. Behaveour when one is lost?

former_member603210
Discoverer
0 Kudos

Hello,

We are about to go live with a large portal, using three LDAPs, for several companies. Each LDAP has diferent users. Two of these LDAPs are stored far away from the portal server and, therefore, network problems might occur. Single Sign On is done via Kerberos. No LDAP secondary/mirrowing servers. See bellow.

We are wondering what will be the portal behavehour, in the event that one of these LDAPs becomes temporarily inaccessible? Will the overall portal forbid general login for all the users on the other LDAPs, or just for those users registered in this missing LDAP?

In both cases, what is the mechanism that the portal will use to

identify that a LDAP is missing? There should be a timeout and/or a number of retries, before a LDAP is put offline. Do you know these timeout values?

PS. In these cases, there should be secondary LDAPs mirrowing the primary ones, to prevent the error situation I described above. This is not possible in this environement and the risk has been taken by the customer. Still, we will need to explain the behaveour in such cases.

Accepted Solutions (1)

Accepted Solutions (1)

markus_doehr2
Active Contributor
0 Kudos

It´s possible to enter more than one LDAP server:

http://help.sap.com/saphelp_nw70/helpdata/en/63/14f5b51a6eff429f2d8b2063400e82/frameset.htm

<...>

ume.ldap.access.server_name:

Hostname or IP address of the LDAP directory server.

For a high availability scenario, you can enter a comma-separated list of LDAP directory servers.

<...>

Markus

Answers (0)