Installation and setup

Before you begin the installation of the LDAP integration, you will need to have an enabled license with the SDK module.

The LDAP integration settings are specified in the AuthIntegrationSettings configuration file in the installation root folder. When you update these settings, you need to restart the Authentication Integration Services (HPMAuthInt) service for the changes to take effect.

Refer to the example configuration file in Default/Sample configuration file to verify that you have the necessary information available before performing the installation.

1. Log in to P4 Planwith the default administrator account, "Administrator".

This is the only account able to create SDK users.

2. Click the Create SDK user button. Click this to create the SDK Account.

3. If the LDAP integration is to support Windows (e.g. Kerberos) authentication, you must check the Account can provide login authentication integration services check box.

4. If you want to enable the integration to support authentication on behalf of other Hansoft SDK integrations, check the second check box.

You can change this option later.

5. Click Edit hostname to confirm the hostname configuration.

6. Run the HansoftAuthIntegration.exe installer program to install the service.

The installer will launch a text editor so that you can edit the configuration file, which by default is c:\Program Files (x86)\Hansoft\Auth Integration\AuthIntegrationSettings. The installer will not complete the installation until you close the editor.

7. Edit the configuration file, using the comments as a guide for the settings.

The most important setting to complete during the installation is the email configuration, as all errors and notifications are sent to this email address.

8. Edit the AutocreateResources section, to specify the LDAP query defining the set of LDAP accounts to synchronize with users.

This is usually done by querying for an LDAP user group created for this purpose. If this is configured, whenever a user is added to the user group, the LDAP integration will automatically create the corresponding user on the server.

9. After you have completed your changes to the configuration, close the editor to resume the installation.

The installation will finish and start the LDAP integration service. When the service has started you will receive an e-mail notification that it is running.

You can always check whether the LDAP Integration is running and connected to the server by logging in as "Administrator" and verifying that the SDK Account you created is shown as being Online.