The document discusses integrating WebSphere Application Server with Active Directory to enable desktop single sign-on. It covers key concepts needed to understand such as Kerberos, SPNEGO, Active Directory domains and forests. It also outlines the configuration steps required in WebSphere Application Server such as setting up a federated repository with Active Directory and ensuring the correct attribute mappings are defined to support single sign-on. Manual editing of configuration files is warned may be needed to maintain the attribute mappings.