Questions 'bout setting up auth. for 4 domains: 2 SecurID, 2 PDC

We have setup a portal with 4 domains. We are currently using one gateway. 2 domains are configured for securID authentication. We'd like to setup the other two domains for authentication using browser certificates. If possible followed by LDAP auth.

I have the following questions:

A. We will add a second gateway and configure this one for PDC authentication. Can the portal server handle this (2 domains SecurID, 2 domains PDC), or do we need to configure a second portal instance? Everything is running in secure mode and is communication over SSL. Any tips, pitfalls etc. we should know about (as previous attempts to set this up failed)?

B. Is it out-of-the-box possible to cascade PDC and LDAP authentication (just like for the other NON-PDC authentication modules) or do we have to build or own authentication module? Again, previous attempts to set this up failed :-)

[910 byte] By [708905] at [2007-11-25 4:35:55]
# 1

A.) You can have multiple domains with multiple types of authentication, however if you enable pdc for a gateway you cannot use any other type of authentication mechanism then.

For sp3a pdc setup documentation outdated, see my earlier posting ( within the last 1 week) that contains detailed steps to do PDC.

B.) Yes you can do auth chaining, you enable auth chaining in the authentication and then in the module name you give Ldap.

Karthik_Krishnamoorthy at 2007-6-29 2:48:36 > top of Java-index,Web & Directory Servers,Portal Servers...