Forum Discussion
dp_119903
Cirrostratus
Sep 15, 2015Non local kerberos realm
I have kerberos for server-side (SSO) working just fine.
My kerberos sso config looks like this:
username source: session.sso.token.last.username
username realm source: session.logon.last.domain...
Kevin_Stewart
Employee
Oct 01, 2015So it seems to me, at least, that forest level trust may in fact be a requirement.
Selective trust does work, but as you've seen in the article requires some heavy lifting in the AD. The basic requirement is a forest trust or a full two-way transitive external trust.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects