Hi there,

I have seen this question asked a couple of times on this mailing list, but no answers were so far provided. Google also is silent on this issue.

The problem is that currently our big organization has a number of legacy AD domains. There's a project to bring these together into a single forest, but until now it has held back our CAS rollout. We'd like to go live with CAS early, so we're trying to find a way to have CAS support more than one AD domain (interface).

Clearly the krb5.conf file supports mutliple realms. But the what properties can I give to the "negotiateSpnego" and "doSpnego" beans that are configured in cas-servlet.xml? I downloaded the javadocs for cas-server-support-spnego, but I didn't see any additional options I could provide here, to nominate a specific "jcifsConfig" bean to use for the spnego connection.

Has anyone had any positive experience with this?

Cheers
Andy


--

Andy Cowling | UK Core IT
Interactive Data Managed Solutions Ltd
-------------------------------------------------------------------------------------------------------------------------------
Suite 1101, Eagle Tower | Montpellier Drive | Cheltenham GL50 1TA | UK
Tel: +44 (0)1242 6941 15 | Fax: +44 (0)1242 6941 01
[email protected]
http://www.interactivedata-ms.com <http://www.interactivedata-ms.com/>

This message (including any files transmitted with it) may contain confidential and/or proprietary information, is the property of Interactive Data Corporation and/or its subsidiaries, and is directed only to the addressee(s). If you are not the designated recipient or have reason to believe you received this message in
error, please delete this message from your system and notify the sender
immediately. An unintended recipient's disclosure, copying, distribution, or
use of this message or any attachments is prohibited and may be unlawful.
Interactive Data (Europe) Ltd Registered No. 949387 England Registered Office:
Fitzroy House 13-17 Epworth Street. London. EC2A 4DL

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

Reply via email to