For PCI compliance, is a central Auth required for domain and non-domain security principles?

We have a Saas offering that is hosted within our own data centers. Our software offering utilizes OpenLDAP as it backing for token auth security. Our operations team has asserted that for PCI compliance our software needs to… Continue reading For PCI compliance, is a central Auth required for domain and non-domain security principles?