Re: IIS 6 und Kerberos



Hi,
I'm back after a few free days.
My kerberos authentication works. I had deleted the SPNs HOST/MOSSserver and
HOST/MOSSserver.dom.de for the machine account MOSSserver.
I had understand that first is checked a explicit SPN für a special service in use. If no such SPN than the HOST is used.
Like the facts say this understanding was wrong .
Thanks for Your help!
Cheers
Tobia


.



Relevant Pages

  • Re: SPN (Service Principal Name)
    ... Konkrete Verwendung - ... oder Configuration Manager: ... "A service principal name (SPN) is the name by which a client uniquely ... The Kerberos authentication service can ...
    (microsoft.public.de.german.win2000.sonstiges)
  • Re: SPN (Service Principal Name)
    ... Konkrete Verwendung - ... oder Configuration Manager: ... "A service principal name (SPN) is the name by which a client uniquely ... The Kerberos authentication service ...
    (microsoft.public.de.german.win2000.sonstiges)
  • Re: Integrated Windows Authentication
    ... Registering an SPN isn't the issue here. ... The issue is that when Internet Explorer see an address http://IPaddress it does not attempt Kerberos authentication. ... Why can we access Server service using \\ipaddress without register SPN? ...
    (microsoft.public.inetserver.iis.security)
  • adding another SPN to a domain controller does not stay added
    ... When I add a new SPN to a domain controller of the form 'ldap/oldhostname' due to a Java application requiring that old SPN to use Kerberos authentication, ADS will eventually remove that SPN which causes me to have to add it again before the Java application works. ...
    (microsoft.public.win2000.active_directory)