Hi Marian, thanks for your response. That makes sense, and indeed this other guide[1] says
> Negotiate is a provider or container which supports Kerberos protocol and it also contains NTLM as a backup when Kerberos fails due to some reason. so my test was certainly falling back to NTLM and thus giving the appearance that the whole thing was working. After talking to Denison again, apparently I missed is that I need to log in to the AD user already in GDM, and not from a shell. I'll be continuing with that. So I'll try that and report back when I have results. [1]https://techcommunity.microsoft.com/blog/iis-support-blog/setting-up- kerberos-authentication-for-a-website-in-iis/347882 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1849346 Title: [snap] kerberos GSSAPI no longer works after deb->snap transition To manage notifications about this bug go to: https://bugs.launchpad.net/firefox/+bug/1849346/+subscriptions -- ubuntu-bugs mailing list [email protected] https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
