Permission delegation on webservice and active directory

  • Thread starter Israel Prince-Beliveau
  • Start date
I

Israel Prince-Beliveau

I've built a webservice accessing the active directory. I'm in a
situation where the IIS server(containing pages and the webservice) is
different than the domain controller. Security should be assignedper user. A
certain user doesn't have the same permissions on the ADS than someone else,
so he should only be available to modify parts he have permissions on it.

As you can guess, I have permission problems. I found on some forums
that I could use an account of the domain as the master active directory
admin, but if I do so, I will lose the specific rights the user has on the
system. Is there a way I could get the rights that user has so he can't
modify part he has not a permission on it? Because I have problems keeping
the User credentials over to the other server. Last week I wasn't using
webservice and the only way i got to keep credential was using basic
authentication (for testing). Now using my ADS webservice I don't have any
more rights on the system.

Anyone as an ideas on how I could work with this? If I could keep my
original login rights used at the start of the webpage using the windows
authentication, it would be best, but I don't want any security holes
neither.
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Members online

No members online now.

Forum statistics

Threads
473,995
Messages
2,570,236
Members
46,821
Latest member
AleidaSchi

Latest Threads

Top