Support AD or LDAPS identity stores

1400
12
05-17-2023 10:52 PM
Status: In Product Plan
AngusHooper1
Occasional Contributor III

ArcGIS Monitor 2023.1 currently uses a built-in identity story which is not encouraged by security. It would help if ArcGIS Monitor was able to integrate with AD and/or LDAPS for identity management and RBAC. For example, an AD group could be linked to a collection.

12 Comments
NicholasEverdell

Fantastic idea! It would help our organisation align Authentication and Access models with our ArcGIS Enterprise too!

Mathew
by

Great idea. Don't need a separate password vault.

JessicaRouns

Wow, this idea is so good!!

JCardey

I really like this idea and my organisation would use this feature immediately. 

EdenPunter

this would really help us align with our organisations security requirements.

Tobias_Gerber

Especially in larger environments only the AD is allowed as an identity store for user authentication for security reasons and no additional local identity store.

EsriEvan
Status changed to: In Product Plan

Hi all,

Thanks for commenting on this one. It is definitely in the Product Plan to implement!

EhsanAbbasi

Thanks EvanMosby,

We have similar requirements for our organisation. Cyber security team is not happy with the built-in accounts. Currently, we have SAML based integration in ArcGIS enterprise using portal, so it will good to federate ArcGIS Monitor through Portal (similar to ArcGIS Server).

Authenticate users using SAML or AD and then allow internal RBAC or AD groups to manage authorisation.

That will become very easy for administrators and cyber team will not have any concerns.

LizParrish_Geospatial

This would be VERY helpful as additional security protocols and controls are put in place by organizations.

TimLehn

This is still a must.  Along with a web adaptor to build a more secure iis connection.