Comparison with directory sync hosted edition – Google Apps Directory Sync for Postini Services Administration Guide User Manual
Page 9

10
Release 1.3.32, October 2009
Comparison with Directory Sync Hosted Edition
Google Apps Directory Sync is a separate utility run on your server, and is
different from the Directory Sync Hosted Edition feature found in the
Administration Console.
Because of the functional advantages and ease of use, Google Apps Directory
Sync is recommended over Directory Sync Hosted Edition for most
administrators.
Both Google Apps Directory Sync and Directory Sync Hosted Edition synchronize
your LDAP server with your user list in the message security service, but they
work in very different ways.
This table compares the two methods:
WARNING:
Google Apps Directory Sync and Directory Sync Hosted Edition are
two distinct ways to synchronize. They are not designed to work together. Using
both at the same time could cause unexpected or contradictory results.
This guide describes Google Apps Directory Sync. For more information about
Directory Sync Hosted Edition, see
Administration Guide and the
Google Apps Directory Sync
Directory Sync Hosted Edition
Location
Runs on a server in your network.
Runs within the message security
service.
Configuration
Configure on your server with the
Configuration Manager utility
provided.
Configure in the Administration
Console.
Direction of Data
Flow
Pushes changes to the message
security service.
Pulls changes from your DSML server.
Installation Needed
Installation includes all needed
components.
Requires complex installation of third
party DSML server on your network.
Firewall Settings
Your firewall must allow outgoing
HTTPS connections to the message
security service.
Your firewall must allow incoming
HTTPS connections to your DSML
server.
Connection
Connects directly to your LDAP server
using port 389, or a port you specify.
Connects to your DSML server by
HTTPS port 443, which then connects
to your LDAP server.
Authorization
Requires administration access on the
message security service, and read
and execute permissions on your
LDAP server. Uses basic
authentication.
Requires administration access on the
message security service, and read
and execute permissions on your
LDAP server. Uses basic
authentication or anonymous access.
Complexity
Allows advanced LDAP queries,
sophisticated organization mapping,
and exception handling.
Allows advanced LDAP queries,
simple organization mapping, and
some exception handling.