Directory Integration
Directory Integration is the connection of existing directory services such as Microsoft Active Directory or LDAP directories to modern identity platforms. Existing user data, groups and structures remain usable and are at the same time integrated into cloud-based environments.
Technically, this is done differently depending on the scenario: synchronization agents continuously transfer users, groups and attributes to the identity platform; authentication can be delegated to the local directory or mapped via synchronized credentials. Alternatively, the existing directory remains the leading login instance via federation. Clear rules are important for data ownership – which system takes precedence in the event of conflicts – and for handling accounts that exist in only one of the two worlds.
Directory integration thus considerably eases the transition to hybrid and cloud-based IT environments: grown structures are preserved, while central administration and the modern protective functions of Identity Security are added.