Hi all, > This way the parts are put in place to then later extend with OpenID; giving a bit more time to investigate those possible projects/products that Richard has recently mentioned. Unfortunately the Open Identity Stack (OpenAM + OpenDJ + OpenIDM) includes an intergrated LDAP server as part of OpenDJ. Therefore if you want to use another LDAP server, then you might want to rule that one out for the sake of the Admin's sanity (you can use the parts individually with other software, but it is politely described as being a "complex" process). The whole OIC suite is generlly considered to be very powerful, yet very complex. Of course Crowd, unlike the Open Identity Stack, is not a fully intergated package and therefore requires other software such as OpenLDAP and the Apache Directory Studio; both of which Altassain recommends on their website. Whether it is a decision to pick OpenLDAP+Crowd; OpenDS+OpenIPA or some other mix, this can wait until later if it is decided to take a non-intergrated path. But the integrated OIC path kind of requires decision whether to drop it now, or at least a decision on whether or not to use OpenDJ as the LDAP server. http://forgerock.com/products/open-identity-stack/ Cheers, Richard