When integrating with an external authentication system
When integrating BMC ProactiveNet with an external authentication system (such as BMC Atrium Single Sign-On, LDAP, and so on), BMC recommends that you use BMC Atrium Single Sign-On as the repository for user management. BMC Atrium Single Sign-On integration is widely supported by BMC products and is the recommended solution for user management of all BMC products going forward. For details, see Single sign-on integration for BMC ProactiveNet.
You must define names of the user groups defined in the Access Control Lists (ACLs) of the configuration items (CIs), role user groups defined in BMC ProactiveNet, and any other user group required to design authorization for BMC ProactiveNet, in the external authentication system. You need to make user to user group association in the external authentication system. BMC recommends that you design the user groups as generically as possible. This prevents the external authentication system from being flooded by a large number of user groups. Also, because some application-specific user groups might be present in the external authentication system, BMC recommends that the user group names be indicative of the application in which they are consumed.