beautypg.com

Comparison with directory sync hosted edition – Google Apps Directory Sync for Postini Services Administration Guide User Manual

Page 9

background image

10

Release 1.3.32, October 2009

Comparison with Directory Sync Hosted Edition

Google Apps Directory Sync is a separate utility run on your server, and is
different from the Directory Sync Hosted Edition feature found in the
Administration Console.

Because of the functional advantages and ease of use, Google Apps Directory
Sync is recommended over Directory Sync Hosted Edition for most
administrators.

Both Google Apps Directory Sync and Directory Sync Hosted Edition synchronize
your LDAP server with your user list in the message security service, but they
work in very different ways.

This table compares the two methods:

WARNING:

Google Apps Directory Sync and Directory Sync Hosted Edition are

two distinct ways to synchronize. They are not designed to work together. Using
both at the same time could cause unexpected or contradictory results.

This guide describes Google Apps Directory Sync. For more information about
Directory Sync Hosted Edition, see About Directory Sync in the Message Security
Administration Guide and the Configuration Guide for Postini Directory Sync.

Google Apps Directory Sync

Directory Sync Hosted Edition

Location

Runs on a server in your network.

Runs within the message security
service.

Configuration

Configure on your server with the
Configuration Manager utility
provided.

Configure in the Administration
Console.

Direction of Data
Flow

Pushes changes to the message
security service.

Pulls changes from your DSML server.

Installation Needed

Installation includes all needed
components.

Requires complex installation of third
party DSML server on your network.

Firewall Settings

Your firewall must allow outgoing
HTTPS connections to the message
security service.

Your firewall must allow incoming
HTTPS connections to your DSML
server.

Connection

Connects directly to your LDAP server
using port 389, or a port you specify.

Connects to your DSML server by
HTTPS port 443, which then connects
to your LDAP server.

Authorization

Requires administration access on the
message security service, and read
and execute permissions on your
LDAP server. Uses basic
authentication.

Requires administration access on the
message security service, and read
and execute permissions on your
LDAP server. Uses basic
authentication or anonymous access.

Complexity

Allows advanced LDAP queries,
sophisticated organization mapping,
and exception handling.

Allows advanced LDAP queries,
simple organization mapping, and
some exception handling.