RSA across domains

Hi,

One of our customers are looking to implement RSA across their network.  They have two domains (one for their office and one for their datacentre).  Users that have a datacentre account will have it named the same as their office account.

Obviously we'd prefer it if users only have one fob so I'm wondering how (if possible) we can go about this.

Thanks in advance
LVL 1
wanstorAsked:
Who is Participating?

[Webinar] Streamline your web hosting managementRegister Today

x
 
wanstorConnect With a Mentor Author Commented:
Yes please do.  We have a VPN between the two sites and if required we can set up a one way trust if that makes any difference.

Thanks
0
 
btanExec ConsultantCommented:
Was thinking of web access gateway which take in username@domain as username and perform backend ldap and rsa check. It offload the check through such central portal login page. If this something you are interested, I can share more..
0
 
btanExec ConsultantCommented:
Know of F5 access policy mgr which can act as the middle man to performs client side prelogin check and rsathen doa whilesever checks. Ldap, ad and kerberos login and rsa secureid is supported. There is their webtop that can present the authorised resource base on the visual workflow policy builder created. Scripts for customization is available. Importantly all userchecks usingis transparent to it and act as a guardian.

 http://www.f5.com/products/big-ip/access-policy-manager.html
0
 
wanstorAuthor Commented:
Setting up a one way trust between the two domains seemed to have resolved the issue. Thanks All!
0
All Courses

From novice to tech pro — start learning today.