LDAP for Multiple Directory Services | Teradata Vantage - Configuring LDAP to Use Multiple Directory Services - Advanced SQL Engine - Teradata Database

Security Administration

Product
Advanced SQL Engine
Teradata Database
Release Number
17.05
17.00
Published
September 2020
Language
English (United States)
Last Update
2021-01-23
dita:mapPath
ied1556235912841.ditamap
dita:ditavalPath
lze1555437562152.ditaval
dita:id
B035-1100
lifecycle
previous
Product Category
Teradata Vantageā„¢

A network may contain multiple directory services. A directory service is made up of one or more directory servers that replicate the same directory structure.

A company with multiple directory services may or may not need to configure LDAP to address the services separately:
  • If the directory services are all in the same forest and are all visible through a Global Catalog (GC), LDAP can authenticate users to access Teradata Vantage in the GC, and no special set up is required. However, for organizations with widely scattered locations, you may find it beneficial to configure LDAP authentication for site awareness. See Configuring Site Aware Authentication in a Global Catalog.
  • Sometimes directory services are entirely separate and it is not possible to connect them through a GC, for example, when a company acquires or merges with another company. If database users must be authenticated by multiple directory services, you must configure a separate entry in the TdgssUserConfigFile.xml for each service.