If your servers are running linux, use netgroups to access control. Basically, the fields are different based whether the entry is a host or a user. cf: pam_access.so & /etc/security/access.conf
Bladelogic is so ancient. The last place I saw was like 8 years ago, they got rid of that as well.