I just finished up a PoC at Conde Nast with some Access Management tools and such. Everything went smoothly and had the wrap-up meeting today. Oracle sales and the heads of our company all met in their board room. This place was awesome!

Conde Nast Board Room

I feel I should also add in some learned items as well =)

- If you have a comma in a DN, you need to escape it with a backslash (ie.  cn=Last\, First,ou=People,dc=domain,dc=com). Amazingly, this was the first time I’ve run into a situation where there was a comma in the dn =)

- Hooking up OAM to AD as the user repository with OVD as the proxy in the middle is amazingly simple and works out of the box perfectly! All the groups and memberships show up and work with all group based policies. Just make sure you select “Data Anywhere” as the LDAP, and in OVD, use the OAM-Active Directory Mapping script for the mapping , not the generic AD one. This will keep your corporate AD schema nice and clean, but still allow OAM to use it’s ob* attributes.

- One of the techie sales guys from Oracle told me that in the upcoming release of OAM (11g), there is going to be tighter integration between OAM and WebLogic. Making the two work out of the box together. No more SSPI pain in the ass plugin!

That’s it for today. Sorry for the delay in posts. I just haven’t had a lot of time to get info on here. I’ll try to update more!

.: Adam