Hello everyone,

we are using CAS with SPNEGO support enabled in our Windows AD Domain without 
problems. Most of the time without problems - i should say  ;-)

Sometimes on clients, where SPNEGO in generally works, cas is swallowing the 
negotiate headers and shows the typical well known cas login screen. Logging 
didn't show some good information's on the cas server side.

I think that the problem lies on client side. Running the Microsoft Windows Tool 
"kerbtray.exe" on these clients and "purging the kerberos ticket cache" then 
the SPENGO negotiate works like a charm and the client is authenticated. This effect is on internet 
explorer as on firefox browser.

Has anyone some information how to track this further or maybe some helpful 
hints on this issue?

thanks,
Frank


--
You are currently subscribed to [email protected] as: 
[email protected]
To unsubscribe, change settings or access archives, see 
http://www.ja-sig.org/wiki/display/JSG/cas-user

Reply via email to