ALIM Web Implementation Guide

IIS App Pool Identity or Pass-Through User Should Not Be a Domain User with Access to AssetWise

In IIS you can set a custom account for the application pool identity. You can also set the IIS web site to connect as a specific user for pass-through authentication.

If you need to use a custom account for either of these items in IIS, for security reasons it is strongly recommended that you do not use a domain user who also has access to the community being served by the ALIM Web virtual directory.

For example, if user.name@domain.com has an account in AssetWise, then do not use user.name@domain.com for the application pool identity or the pass-through user account. This configuration may allow any member of the domain to gain access to the community through this ALIM Web virtual directory, whether or not they actually have an account set up in that community.