Subject: Shared Login, Not Single Sign-on…
Yes - you are referring to the Notes 8 Shared Login feature; not to be confused with the ‘Notes Single Logon’ feature or ‘Single Sign-on’ (i.e. SSO) for Domino Web Servers. For more information on the Notes Shared Login feature, refer to the topic “Using Notes shared login to suppress password prompts” within the Lotus Administrator Help Database.
(From the topic “Using Notes shared login to suppress password prompts”) :
Note Shared login users with Windows roaming profiles should log in to an Active Directory domain controller from one computer at a time. When users are logged in from more than one computer, there is a possibility that Notes may not be able to decrypt the ID file.
When Notes shared login is enabled:
Security Settings for policies that relate to Notes passwords are not supported and are ignored. The User Security dialog box does not display fields relating to Notes passwords.
The “Check password on Notes ID file” security setting is not supported. Domino servers ignore this setting for IDs enabled for shared login. If you use pre-8.5 Domino servers, the setting should be disabled for users with these IDs.
If Notes users were synchronizing Internet passwords with Notes passwords in an earlier release, they must now begin managing their Internet passwords.
Shared login-enabled IDs that are stored in a Notes ID vault can be used from more than one Microsoft Windows computer without requiring users to make copies of the ID file. To use an ID on more than one computer when a Notes ID vault is not used, a user clicks “Copy ID” in the User Security dialog box to make a new, Notes-password-protected copy of the ID file. When the user runs Notes using the copied ID on another computer, the user’s effective policy determines if the ID will be enabled for Notes shared login.
If Notes IDs are stored on a network share, the IDs can be used only from the computers on which shared login is activated.
To open an shared login-enabled ID through the Domino Administrator, you must always use the computer and the Windows login name that were used when the ID was shared login-enabled.
Roaming users who roam their IDs cannot use Notes shared login.