SPN problems?



Hello,

There is a web application that uses .NET (IIS) and Java (Tomcat) application servers (some users prefer one variant to another).

The problem is when configuring Single Sign-On for this application with Active Directory as authentication service. Both variants use some Service Principal Names to set-up SSO, and eventually there is some sort of conflict between them. Each variant can be configured separately with no problem, but when I try to make them work together they both fail.

IIS and Tomcat run on the same machine.

My first thought is: should I pay special attention when setting SPNs with such configuration, ie. two web services running on the same machine, IIS on port 80, Tomcat on port 8080? I realize what I write is a bit vague, but I am starting to deal with the problem. Maybe someone have dealt with similar problem?

Any thoughts would be greatly appreciated.

thank you,
gonzo
.



Relevant Pages

  • IIS TOMCAT Security
    ... I'am having a problem configuring IIS Security with ... IIS has been configured to serve the Tomcat ... I get IIS to trigger authentication when there is no "/" ...
    (microsoft.public.inetserver.iis.security)
  • Re: IIS TOMCAT Security
    ... What authentication do you have configured in IIS? ... sort of authentication done by Tomcat. ... I'am having a problem configuring IIS Security with ...
    (microsoft.public.inetserver.iis.security)
  • Re: Cantt download "exe" file because of IIS version
    ... with IIS and can completely alter IIS behavior in arbitrary manners, ... cut out the EXE download and just standardize the installation using your ... As far as I can tell, we are only running Tomcat as an ISAPI application. ...
    (microsoft.public.inetserver.iis)
  • JspISAPI - Run Jsp Through IIS with SSL and NTLM
    ... IIS to tomcat webserver running on same machine. ... Disadvantages of running Tomcat/JRun on 8080 port: ... Setting up SSL on Tomcat is very difficult, ... You can block ports other then 80 on your web server, ...
    (microsoft.public.inetserver.iis.security)
  • Re: Why the p5 vs i5 price difference?
    ... You don't really want to call IIS "premium" do you? ... It's stoneage compared to Apache / Tomcat. ... That's IBM's recommendation. ... But, yes, I worked with MySQL and I run it in a productive environment. ...
    (comp.sys.ibm.as400.misc)