Web authentication & LDAP
n All major web servers can support LDAP for
authentication (Apache, IIS, E’prise)
n Based on ‘group’ ACL’s   e.g. ou=it-div-is
n Simple to setup and configure (Used
extensively in secure web archiving)
n Does not require physical accounts to be
created on an OS. (few lines of LDIF only)
n ACL’s can be easily created based on data in
LDAP from CCDB and HR (e.g. division,
group, status, mailing list membership etc.)