I’ve written in earlier posts about confusion between different ways of using LDAP with MQ for authentication. Despite those articles, I still see questions from people who don’t really know what they can or should do.

As an attempt at simplifying the possibilities for a Linux environment, I drew up this chart. It is based on where your identities are defined.

The references are to earlier articles on this site:

  1. More on Active Directory with Linux
  2. Using Active Directory for Authentication
  3. More flexibility for user management

There are, of course, further details that you might need to configure. You may have reasons for picking different options. And some configurations, such as using JWT for authentication, impose or imply specific options. But hopefully, if you don’t really know what can be done, then this gives you the starting point.

