Main Settings (Remote Authentication Source)

Authentication sources allow you to import and/or authenticate users and groups from external user repositories. Users and groups can exist anywhere in your enterprise.

To specify the category, default profile, and group folder for this authentication source:

  1. In the Authentication Source Category text box, type the prefix you want to use to distinguish the users and groups imported from this domain.

    For example, if you enter myDomain, each user name and each group name will be prefixed by the string myDomain; for example, myUser becomes myDomain\myUser and myGroup becomes myDomain\myGroup.

    You can set the category to any value you want, but after you create this authentication source you cannot change this value.

    Note:
    You might want to name the authentication source category the same name as the source domain. Some crawlers have the ability to import security information with the imported content, making portal security much easier to maintain. For this to work, the users with access to the imported content need to correspond to portal users, as specified in the Global ACL Sync Map. If the authentication source category matches the name of the source domain, this correspondence is automatic.

    Multiple authentication sources can use the same category. However, because the prefix is prepended to the user and group names, you need to be certain that the domains involved do not have different users or groups with the same name. That is, if a LizaR user exists on one domain, and a LizaR user exists on another domain, they must be the same user because only one user will be created.

  2. Under Default Profiles, specify which default profiles should be applied to users imported by this authentication source. A default profile includes portlets, portlet preferences, My Pages, and personalization settings. By assigning a default profile to the imported users, you can control what users see when they first log in to your portal. After that, users can further personalize their views of the portal.

    The default profile drop-down list is populated with the users in the default profiles folder. To learn how to create default profiles, see Edit Default Profiles.

    If you want to apply the same default profile to all users imported by this authentication source, you can specify the following settings when you create the authentication source:

    1. In the Default Profile drop-down list, choose the default profile you want to apply to the users imported by this authentication source.

    2. Under Target Folder, click Browse; then, in the Change Folder dialog box, choose the folder in which you want to store users imported by this authentication source and click OK.

      If you want to display an Experience Definition interface to users when they log in, choose a folder to which the Experience Definition has been applied or apply the Experience Definition to the chosen folder before you import users.

    If you want to apply different default profiles to the users in some groups:

    1. Perform a group-only synchronization.

    2. Return to this page in the editor.

    3. Click Add Group; then, in the Add Group dialog box, select the groups to which you want to apply different default profiles and click OK.

      Note:
      To edit a group, click the group name.

    4. For each group, specify which default profile should be applied to the associated users; in the Default Profile drop-down list, choose the default profile.

    5. For each group, specify the folder in which the associated users should be stored; under Target Folder, click Browse; then, in the Change Folder dialog box, choose the folder and click OK.

    6. If a user is a member of more than one group in this list, the uppermost default profile is applied. If necessary, move groups up or down in the list.

  3. Under New Groups, click Browse; then, in the Change Folder dialog box, choose the folder in which you want to store groups imported by this authentication source and click OK.


  1. Click Administration.
  2. Open the Remote Authentication Source Editor: