View Single Post
  #7 (permalink)  
Old 2007-02-07
MarioL MarioL is offline
Senior Member
 
Join Date: 2007-01-18
Location: London
Posts: 375
Rep Power: 2
MarioL has an average reputation (10+)
Default Re: LDAP authentication

For SSO you should consider using 2 factor (strong) authentication, rather than just AD. More so when you use SSO and "from outside the network" in the same sentence.

Rambling on, you should also make sure that FW-1 and AD are using 636 to communicate (and not 389 like many ppl use) so that it's encrypted. Never did this on 2003 nor with the latest FW-1 versions, so I can't help there.
Reply With Quote