Forum Discussion
Greg_130338
Nimbostratus
Aug 10, 2015Exchange 2013 iApp
Hey all, recently deployed this iApp. Question about SSO. It looks like the iapp configures 3 SSO profiles, forms based, kerberos, and NTLMv1. However, none of these are actually assigned to the acce...
mikeshimkus_111
Aug 10, 2015Historic F5 Account
Hi Greg, SSO for non-OWA services is controlled by the APM Exchange profile, which is located under Access Policy ›› Application Access : Microsoft Exchange in the GUI.
The OWA SSO is selected using the _select_sso_irule created by the iApp. When the rule encounters the OWA URI, it uses WEBSSO::select to pick the forms SSO.
Greg_130338
Nimbostratus
Aug 10, 2015Roger. I think that's where I am at at this point. I may just rebuild both iApps and start over. Thanks for the assistance. For the NTLM auth I am now getting auth failures logged on the F5, NO LOGON SERVERS AVAILABLE. this is through the kerberos SSO config. it gives an error, could not verify user (alot of characters). which is followed by a bunch of failed auth errors for my userID. My DC is definitely up and the delegated kerberos account is not locked. Ever seen that before? This was definitely working a few days ago.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects