Forum Discussion
Matantal_338057
Oct 18, 2017Nimbostratus
Kerberos SSO fails when user required for smartcard.
Hi all, So basicly im doing APM access to portal resource (rewrite) that is done with mobile certificate translated to KDC (After upn extraction+AD query). After sso mapping is done KDC kicks in and fails . I found out that if i remove smartcard auth requirment in my domain KDC gets a valid ticket and SSO is successfull. What am i missing?
- Stanislas_Piro2Cumulonimbus
Hi,
Kerberos sso can be used whatever authentication is configured.
The only requirements for Kerberos sso are:
- sAMAcountName in variable session.sso.token.last.username
- Kerberos realm in variable session.logon.last.domain
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects