Skip to main content

Keeping vendors out of AD

We often prattle on about the benefits of having your directory perform authorization, either via NPS for AD or Freeradius for LDAP.  Certainly, for employees where HR can manage users in AD, that makes a lot of sense. Single step disablement.   A recent customer signed on with the opposite needs.  They have non-employees who access their infrastructure remotely via Bomgar and they do not want those users in their directory.

This configuration makes a lot of sense.  Clearly securing vendor remote access is a hot topic after the Target breach.  Any enterprise-class remote access system should be able to route certain users to one authentication server and other to another.  On the WiKID server, you can have one user domain for vendors and one for employees.  You can even use our API to create a CSR console so that your vendors can manage their own employees (if you're comfortable with that).

Current rating: 2.3

Recent Posts

Archive

2024
2022
2021
2019
2018
2017
2016
2015
2014
2013
2012
2011
2010
2009
2008

Categories

Tags

Authors

Feeds

RSS / Atom