WINDOWS SECURITY AND DIRECTORY SERVICES FOR UNIX USING CENTRIFY DIRECTCONTROL
12
© CENTRIFY CORPORATION 2004-2005. ALL RIGHTS RESERVED.
PAGE 12
Designing the Centrify DirectControl Solution
Before beginning development of the solution it is essential to understanding the
underlying design of the Centrify DirectControl product and how it can be applied to
extending Active Directory services to UNIX systems and applications. This next section
reviews the conceptual and logical design of a solution using DirectControl as well as an
example of a physical design showing how DirectControl would be deployed in a real-
world scenario.
Conceptual Design of Centrify DirectControl Solution
Centrify's DirectControl solution combines the necessary authentication, authorization
and directory services required for the End State into a single integrated solution. Rather
than treating each component service as a separate concept that requires individual
designs, the design for the single DirectControl service will more than cover the
requirements for the End State. In concept, a UNIX or Linux machine with the
DirectControl agent installed is very similar to a Windows XP client from the standpoint of
services provided between the Active Directory server and the client system.
By combining the authentication, authorization and directory services into a single
integrated service, administrators benefit through simplicity, reduced overhead in building
and maintaining the solution and the secure centralization of user identity management.
Users also benefit from this approach since the username, password and policies (e.g.
password complexity rules) that they are using on their Windows clients can now be
applied to their UNIX and Linux clients. Figure 1.3 illustrates the conceptual design for
using DirectControl to provide authentication and authorization services to a UNIX or
Linux client.
Figure 1.3. Overview of the conceptual designs for authentication, authorization
and directory services using Centrify DirectControl
Summary :
PAGE 12 Designing the Centrify DirectControl Solution Before beginning development of the solution it is essential to understanding the underlying design of the Centrify DirectControl product and how it can be applied to extending Active Directory services to UNIX systems and applications. Conceptual Design of Centrify DirectControl Solution Centrify's DirectControl solution combines the necessary authentication, authorization and directory services required for the End State into a single integrated solution.
Tags :
solution,serices,directory,centrify,design,unix,using,authentication,conceptual,authorization,client,serice,linux