Upgrading roaming users and introducing single sing-on

We are just about to start preparing the upgrade of our clients from 6.5.4 to 8.5.1. We have 3.700 users who are configured as Notes roaming users. I have a couple of questions:

  1. I have read several places that it is recommended to unroam and reenable roaming for users who are already configured as roaming users. I really hope that is not necessary? If that is really what is recommend please let us know why, and if there is any other solution (like maybe waiting for the 8.5.2 release). The process of unroaming and reenabling roaming for 3.700 users is an extremely scary scenario and very time consuming!

  2. We would like to use some kind of single sign-on, but we can’t use Shared Login as we use Citrix and save the ID file in the personal address book. That leaves us with Notes Single Logon as in earlier releases. We would like to introduce idvault in order to archive easier administration (reset of passwords), but unfortunately idvault is not supported with Notes Single Logon. That means that we are stuck with the old password recovery.

The questions are:

a) Will IDvault work with Notes Single Login (through it is not supported)?

b) Are you going to support NSL with IDvault in the near future?

c) With our configuration, is there any hope that we will be able to use IDvault and Shared Logon in the future?