I think it would be nice to allow user authentication to be done either to the local DB or to an LDAP backend (Active Directory, Sun DSEE, OpenLDAP, etc..) Authorization and permission will still be done within the DB, just the auth would be accomplishedusing LDAP.