B.3 LDAP Environments

In LDAP environments, ldapschema.exe is used.

B.3.1 Protocom-SSO-Auth-Data

This attribute contains all user-specific authentication data, such as the passphrase.

Attribute Name

Protocom-SSO-Auth-Data

Classes assigned to

User

OID

2.16.840.1.113719.2.26.4.1.1

B.3.2 Protocom-SSO-Entries

This attribute contains the following:

  • All the user's login credentials, including passwords.

  • Specific preferences and application definitions at the user object.

  • Corporate application definitions and preferences at the container and organizational unit objects.

Attribute Name

Protocom-SSO-Entries

Classes assigned to

Container

Organizational Unit

User

OID

2.16.840.1.113719.2.26.4.2.1

B.3.3 Protocom-SSO-Entries-Checksum

This attribute stores a checksum so that the single sign-on client can easily determine whether a complete reload of single sign-on adapter information is required.

Attribute Name

Protocom-SSO-Entries Checksum

Classes assigned to

Container

Organizational Unit

User

OID

2.16.840.1.113719.2.26.4.5.1

B.3.4 Protocom-SSO-Profile

This attribute stores the address of the organizational unit to be redirected to.

Attribute Name

Protocom-SSO-Profile

Classes assigned to

Container

Organizational Unit

User

OID

2.16.840.1.113719.2.26.4.17.1

B.3.5 Protocom-SSO-Security-Prefs

This attribute stores the data required for advanced passphrase policies including administrator set passphrase questions and passphrase help information and settings.

Attribute Name

Protocom-SSO-Security-Prefs

Classes assigned to

Container

Organizational Unit

User

OID

2.16.840.1.113719.2.26.4.4.1

B.3.6 Protocom-SSO-Security-Prefs-Checksum

A checksum used to optimize reading of the Security Preference attribute.

Attribute Name

Protocom-SSO-Security-Prefs-Checksum

Classes assigned to

Container

Organizational Unit

User

OID

2.16.840.1.113719.2.26.4.6.1

B.3.7 Protocom-SSO-Connections

This attribute stores the connection information, ie., the ip address along with the timestamp.

Attribute Name

Protocom-SSO-Connections

Classes assigned to

User

OID

2.16.840.1.113719.2.26.4.7.1

B.3.8 Protocom-SSO-ConnectionLimit

This attribute stores the configuration parameter indicating the number of concurrent connections that are allowed for the user.

  • The value of this parameter can be set between 0 and 32.

  • The default value is 0, where 0 indicates that unlimited connections are allowed and the feature is disabled for the user.

Attribute Name

Protocom-SSO-ConnectionLimit

Classes assigned to

User, Organization, Organizational Unit, Country

OID

2.16.840.1.113719.2.26.4.7.2

B.3.9 Protocom-SSO-ConnectionTimeToLive

This attribute stores the configuration parameter that indicates how long the connection information will be stored. The value is stored in minutes.

  • The value of this parameter can be set between 0 and 65536 (Slightly more than 45 days).

  • The default value is 65536. This indicates that any entry in the Protocom-SSO-Connections attribute that is older than 45 days is considered outdated and hence will be removed.

Attribute Name

Protocom-SSO-ConnectionTimeToLive

Classes assigned to

User, Organization, Organizational Unit, Country

OID

2.16.840.1.113719.2.26.4.7.3

B.3.10 Protocom-SSO-ConcurrentConfig

This preference controls the inheritance of settings from a higher level container, organizational unit or country.

  • The value of this parameter can be set to either Yes or No. When this option is set to Yes, the inheritance of settings from a higher level container, organizational unit or country is disabled.

  • The default value is No. When this option is set to No or Default, the inheritance of settings from a higher level container, organizational unit or country is enabled.

Attribute Name

Protocom-SSO-ConcurrentConfig

Classes assigned to

User, Organization, Organizational Unit, Country

OID

2.16.840.1.113719.2.26.4.7.4