SPN problems?
- From: gonzo <gonzo@xxxxxxxxxxxxxxxxxxxxxx>
- Date: Thu, 18 Sep 2008 23:04:52 +0200
Hello,
There is a web application that uses .NET (IIS) and Java (Tomcat) application servers (some users prefer one variant to another).
The problem is when configuring Single Sign-On for this application with Active Directory as authentication service. Both variants use some Service Principal Names to set-up SSO, and eventually there is some sort of conflict between them. Each variant can be configured separately with no problem, but when I try to make them work together they both fail.
IIS and Tomcat run on the same machine.
My first thought is: should I pay special attention when setting SPNs with such configuration, ie. two web services running on the same machine, IIS on port 80, Tomcat on port 8080? I realize what I write is a bit vague, but I am starting to deal with the problem. Maybe someone have dealt with similar problem?
Any thoughts would be greatly appreciated.
thank you,
gonzo
.
- Follow-Ups:
- Re: SPN problems?
- From: Paul Bergson [MVP-DS]
- Re: SPN problems?
- From: Joe Kaplan
- Re: SPN problems?
- Prev by Date: RE: Cannot change passwords on one domain controller
- Next by Date: Re: authentication
- Previous by thread: Windows Server 2008, w/Exchange 2007 install & AD 2003 Server
- Next by thread: Re: SPN problems?
- Index(es):
Relevant Pages
|