<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Problems on Configuring SSO (Kerberos )against Active Directory  in Alfresco Forum</title>
    <link>https://connect.hyland.com/t5/alfresco-forum/problems-on-configuring-sso-kerberos-against-active-directory/m-p/60861#M21322</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;the first point , i doubt that kerberos is well configured cause the file &lt;STRONG&gt;'alfresco.log'&lt;/STRONG&gt;&amp;nbsp; don't contain any indication to sso but synchronization of users from ldap works very well that's why i'm looking to the file where login operation is written.&lt;/P&gt;&lt;P&gt;Second point it's not work as we except ::&lt;/P&gt;&lt;P&gt;login page will disappear&amp;nbsp; if the user session on&amp;nbsp;our&amp;nbsp; domain is open .&lt;/P&gt;&lt;P&gt;But the current situation is a login page that enable&amp;nbsp;user connects to the share based on his ldap credentials .&lt;/P&gt;&lt;P&gt;It requires some investigation on logging file to understand the cause .Thanks&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 12 Mar 2018 14:56:08 GMT</pubDate>
    <dc:creator>mbedoui</dc:creator>
    <dc:date>2018-03-12T14:56:08Z</dc:date>
    <item>
      <title>Problems on Configuring SSO (Kerberos )against Active Directory</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/problems-on-configuring-sso-kerberos-against-active-directory/m-p/60859#M21320</link>
      <description>I have installed Alfresco Community Edition V5.0.0 on Ubuntu&amp;nbsp;After configuring&amp;nbsp;alfresco-global.properties , import of users from AD&amp;nbsp; works very well after that ,I 'm looking for enabling kerberos with alfresco and Active Directory&amp;nbsp;that's why i have followed the documentation starting by :&amp;nbsp;creating a</description>
      <pubDate>Thu, 08 Mar 2018 17:05:57 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/problems-on-configuring-sso-kerberos-against-active-directory/m-p/60859#M21320</guid>
      <dc:creator>mbedoui</dc:creator>
      <dc:date>2018-03-08T17:05:57Z</dc:date>
    </item>
    <item>
      <title>Re: Problems on Configuring SSO (Kerberos )against Active Directory</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/problems-on-configuring-sso-kerberos-against-active-directory/m-p/60860#M21321</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sorry, I cannot understand what's your problem.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What is not working?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 12 Mar 2018 14:32:20 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/problems-on-configuring-sso-kerberos-against-active-directory/m-p/60860#M21321</guid>
      <dc:creator>angelborroy</dc:creator>
      <dc:date>2018-03-12T14:32:20Z</dc:date>
    </item>
    <item>
      <title>Re: Problems on Configuring SSO (Kerberos )against Active Directory</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/problems-on-configuring-sso-kerberos-against-active-directory/m-p/60861#M21322</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;the first point , i doubt that kerberos is well configured cause the file &lt;STRONG&gt;'alfresco.log'&lt;/STRONG&gt;&amp;nbsp; don't contain any indication to sso but synchronization of users from ldap works very well that's why i'm looking to the file where login operation is written.&lt;/P&gt;&lt;P&gt;Second point it's not work as we except ::&lt;/P&gt;&lt;P&gt;login page will disappear&amp;nbsp; if the user session on&amp;nbsp;our&amp;nbsp; domain is open .&lt;/P&gt;&lt;P&gt;But the current situation is a login page that enable&amp;nbsp;user connects to the share based on his ldap credentials .&lt;/P&gt;&lt;P&gt;It requires some investigation on logging file to understand the cause .Thanks&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 12 Mar 2018 14:56:08 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/problems-on-configuring-sso-kerberos-against-active-directory/m-p/60861#M21322</guid>
      <dc:creator>mbedoui</dc:creator>
      <dc:date>2018-03-12T14:56:08Z</dc:date>
    </item>
    <item>
      <title>Re: Problems on Configuring SSO (Kerberos )against Active Directory</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/problems-on-configuring-sso-kerberos-against-active-directory/m-p/60862#M21323</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ouups a warning in &lt;STRONG&gt;alfresco.log&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2018-03-12 17:11:58,375 WARN [org.alfresco.web.app.servlet.NTLMAuthenticationFilter] [http-apr-8080-exec-1] NTLM filter, error resolving CIFS host nameGEDALFRESCOA&lt;BR /&gt;2018-03-12 17:11:58,376 INFO [org.alfresco.web.app.servlet.NTLMAuthenticationFilter] [http-apr-8080-exec-1] NTLM filter using server name gedAlfresco&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;FYI: a hostname is &lt;STRONG&gt;&lt;EM&gt;gedAlfresco&lt;/EM&gt;&lt;EM&gt;&amp;nbsp;, &lt;/EM&gt;&lt;/STRONG&gt;with a&lt;EM&gt; &lt;/EM&gt;&lt;STRONG&gt;&lt;EM&gt;FQDN&amp;nbsp;&amp;nbsp;&lt;A class="link-titled" href="http://gedalfresco.gct.com.tn:8080/share/page/" title="http://gedalfresco.gct.com.tn:8080/share/page/" rel="nofollow noopener noreferrer"&gt;http://gedalfresco.gct.com.tn:8080/share/page/&lt;/A&gt;&amp;nbsp; &amp;nbsp;&lt;/EM&gt;&lt;/STRONG&gt;returns&lt;STRONG&gt;&lt;EM&gt;&amp;nbsp;&lt;SPAN style="color: #000000; font-weight: 400;"&gt;Login authentication failed. Please close and re-open Safari to try again. &lt;/SPAN&gt;&lt;SPAN style="color: #000000;"&gt;on&amp;nbsp; chrome&amp;nbsp; &lt;/SPAN&gt;&lt;/EM&gt;&lt;/STRONG&gt;&lt;SPAN style="color: #000000;"&gt;but the login page appears&amp;nbsp; on&lt;/SPAN&gt;&lt;STRONG&gt;&lt;SPAN style="color: #000000;"&gt; &lt;/SPAN&gt;&lt;EM style="color: #000000;"&gt;IE .&lt;/EM&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 12 Mar 2018 16:22:01 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/problems-on-configuring-sso-kerberos-against-active-directory/m-p/60862#M21323</guid>
      <dc:creator>mbedoui</dc:creator>
      <dc:date>2018-03-12T16:22:01Z</dc:date>
    </item>
    <item>
      <title>Re: Problems on Configuring SSO (Kerberos )against Active Directory</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/problems-on-configuring-sso-kerberos-against-active-directory/m-p/60863#M21324</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Configuring Kerberos always is a painful experience. You have to be very precise with every configuration, or it will be a mess in the end.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me share with you some tips about the process that I'm missing in your steps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Install JCE without restrictions&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Download JCE Unlimited Strength from Oracle (&lt;A href="http://www.oracle.com/technetwork/java/javase/downloads/jce8-download-2133166.html" rel="nofollow noopener noreferrer"&gt;http://www.oracle.com/technetwork/java/javase/downloads/jce8-download-2133166.html&lt;/A&gt;) and install it on your server&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;PRE&gt;$ unzip jce_policy-8.zip&lt;BR /&gt;$ cd UnlimitedJCEPolicyJDK8/&lt;BR /&gt;$ cp local_policy.jar /usr/java/jdk1.8.0_111/jre/lib/security/&lt;BR /&gt;$ cp US_export_policy.jar /usr/java/jdk1.8.0_111/jre/lib/security/&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Double-check names everywhere&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you miss one server name or domain name, the&amp;nbsp;configuration will fail. Double check your domain (GCT.COM.TN) and admin server (srv-adgctgab.gct.com.tn) for every step.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Verify Kerberos client from command line&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can be sure that your kerberos client is working fine from server command line and discard this point of failure.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(Names in the following sample&amp;nbsp;could not be exact)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;PRE&gt;$ kinit ADUser@GCT.COM.TN&lt;BR /&gt;Password for ADUser@GCT.COM.TN:&lt;BR /&gt;&lt;BR /&gt;$ klist&lt;BR /&gt;Ticket cache: FILE:/tmp/krb5cc_0&lt;BR /&gt;Default principal: ADUser@GCT.COM.TN&lt;BR /&gt;&lt;BR /&gt;Valid starting Expires Service principal&lt;BR /&gt;31/07/17 09:50:16 31/07/17 19:50:16 krbtgt/GCT.COM.TN@GCT.COM.TN&lt;BR /&gt; renew until 01/08/17 09:50:07&lt;BR /&gt;&lt;BR /&gt;$ kdestroy&lt;BR /&gt;&lt;BR /&gt;$ klist -k -t /opt/alfresco/keytab/alfrescohttp.keytab&lt;BR /&gt;Keytab name: FILE:/opt/alfresco/keytab/alfrescohttp.keytab&lt;BR /&gt;KVNO Timestamp Principal&lt;BR /&gt;---- ----------------- --------------------------------------------------------&lt;BR /&gt; 0 01/01/70 01:00:00 HTTP/gedAlfresco.gct.com.tn@GCT.COM.TN&lt;BR /&gt; 0 01/01/70 01:00:00 HTTP/gedAlfresco.gct.com.tn@GCT.COM.TN&lt;BR /&gt; 0 01/01/70 01:00:00 HTTP/gedAlfresco.gct.com.tn@GCT.COM.TN&lt;BR /&gt; 0 01/01/70 01:00:00 HTTP/gedAlfresco.gct.com.tn@GCT.COM.TN&lt;BR /&gt; 0 01/01/70 01:00:00 HTTP/gedAlfresco.gct.com.tn@GCT.COM.TN&lt;BR /&gt;&lt;BR /&gt;$ kinit -k -t /opt/alfresco/keytab/alfrescohttp.keytab HTTP/gedAlfresco.gct.com.tn@GCT.COM.TN&lt;BR /&gt;&lt;BR /&gt;$ klist&lt;BR /&gt;Ticket cache: FILE:/tmp/krb5cc_0&lt;BR /&gt;Default principal: HTTP/gedAlfresco.gct.com.tn@GCT.COM.TN&lt;BR /&gt;&lt;BR /&gt;Valid starting Expires Service principal&lt;BR /&gt;02/08/17 14:58:00 03/08/17 00:58:00 krbtgt/GCT.COM.TN@GCT.COM.TN&lt;BR /&gt; renew until 03/08/17 14:57:55&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Authentication chain in alfresco.war&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Verify authentication chain and users configuration in repository.&lt;/P&gt;&lt;PRE&gt;$ vi /opt/alfresco/tomcat/shared/classes/alfresco-global.properties&lt;BR /&gt;&lt;BR /&gt;authentication.chain=alfinst:alfrescoNtlm,kerberos1:kerberos,ldap1:ldap-ad&lt;BR /&gt;&lt;BR /&gt;# Kerberos&lt;BR /&gt;kerberos.authentication.realm=GCT.COM.TN&lt;BR /&gt;kerberos.authentication.user.configEntryName=Alfresco&lt;BR /&gt;kerberos.authentication.defaultAdministratorUserNames=administrator,admin,adminAlfresco,administrador&lt;BR /&gt;kerberos.authentication.cifs.configEntryName=AlfrescoCIFS&lt;BR /&gt;kerberos.authentication.cifs.password=xxxxxxxxx&lt;BR /&gt;kerberos.authentication.http.configEntryName=AlfrescoHTTP&lt;BR /&gt;kerberos.authentication.http.password=xxxxxxxxx&lt;BR /&gt;kerberos.authentication.sso.enabled=true&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Remote section in share.war&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Verify your Kerberos credentials and uncomment remote connector in Share webapp.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;PRE&gt;$ vi /opt/alfresco/tomcat/shared/classes/alfresco/web-extension/share-config-custom.xml&lt;BR /&gt;&lt;BR /&gt; &amp;lt;config evaluator="string-compare" condition="Kerberos" replace="true"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;kerberos&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;password&amp;gt;xxxxxxxxx&amp;lt;/password&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;realm&amp;gt;GCT.COM.TN&amp;lt;/realm&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;endpoint-spn&amp;gt;HTTP/gedAlfresco.gct.com.tn@GCT.COM.TN&amp;lt;/endpoint-spn&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;config-entry&amp;gt;ShareHTTP&amp;lt;/config-entry&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;stripUserNameSuffix&amp;gt;true&amp;lt;/stripUserNameSuffix&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/kerberos&amp;gt;&lt;BR /&gt; &amp;lt;/config&amp;gt;&lt;BR /&gt;&lt;BR /&gt; &amp;lt;config evaluator="string-compare" condition="Remote"&amp;gt;&lt;BR /&gt; &amp;lt;remote&amp;gt;&lt;BR /&gt;&amp;lt;!-- &lt;BR /&gt; &amp;lt;ssl-config&amp;gt;&lt;BR /&gt; &amp;lt;keystore-path&amp;gt;alfresco/web-extension/alfresco-system.p12&amp;lt;/keystore-path&amp;gt;&lt;BR /&gt; &amp;lt;keystore-type&amp;gt;pkcs12&amp;lt;/keystore-type&amp;gt;&lt;BR /&gt; &amp;lt;keystore-password&amp;gt;alfresco-system&amp;lt;/keystore-password&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;lt;truststore-path&amp;gt;alfresco/web-extension/ssl-truststore&amp;lt;/truststore-path&amp;gt;&lt;BR /&gt; &amp;lt;truststore-type&amp;gt;JCEKS&amp;lt;/truststore-type&amp;gt;&lt;BR /&gt; &amp;lt;truststore-password&amp;gt;password&amp;lt;/truststore-password&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;lt;verify-hostname&amp;gt;true&amp;lt;/verify-hostname&amp;gt;&lt;BR /&gt; &amp;lt;/ssl-config&amp;gt;&lt;BR /&gt;--&amp;gt;&lt;BR /&gt;...&lt;BR /&gt; &amp;lt;/remote&amp;gt;&lt;BR /&gt; &amp;lt;/config&amp;gt;&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Login for Kerberos and JVM&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Your java.login.config and java.security settings look fine.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Include your configuration for Tomcat&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can use setenv.sh config file&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;PRE&gt;$ vi /opt/alfresco/tomcat/bin/setenv.sh&lt;BR /&gt;&lt;BR /&gt;JAVA_OPTS="$JAVA_OPTS -Djava.security.krb5.conf=/etc/krb5.conf"&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Browsers&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It works fine with IE, just add Alfresco Site (&lt;A class="link-titled" href="http://gedalfresco.gct.com.tn:8080" title="http://gedalfresco.gct.com.tn:8080" rel="nofollow noopener noreferrer"&gt;http://gedalfresco.gct.com.tn:8080&lt;/A&gt;) to Local Intranet option and mark&amp;nbsp;"Automatically logon with current username and password" flag.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Chrome and Firefox will requiere further configuration:&amp;nbsp;&lt;A href="https://docs.alfresco.com/community/concepts/auth-kerberos-clientconfig.html" rel="nofollow noopener noreferrer"&gt;https://docs.alfresco.com/community/concepts/auth-kerberos-clientconfig.html&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&lt;EM&gt;WARNING:&lt;/EM&gt;&lt;/STRONG&gt; I've included some highlights about Kerberos configuration but probably some paths or names are wrong. Just to include a checkpoint for you in order to validate your installation. Probably you have to find a typo somewhere and it will be done.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 12 Mar 2018 18:14:27 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/problems-on-configuring-sso-kerberos-against-active-directory/m-p/60863#M21324</guid>
      <dc:creator>angelborroy</dc:creator>
      <dc:date>2018-03-12T18:14:27Z</dc:date>
    </item>
    <item>
      <title>Re: Problems on Configuring SSO (Kerberos )against Active Directory</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/problems-on-configuring-sso-kerberos-against-active-directory/m-p/60864#M21325</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'm going to check the configuration according to your recommendation , but in parallel with this action&amp;nbsp; I'm looking to know the log file realted to kerberos ,activate log if already disabled and cause of this warning and errors&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="color: #727174; background-color: #ffffff; border: 0px;"&gt;2018-03-12 17:11:58,375 WARN [org.alfresco.web.app.servlet.NTLMAuthenticationFilter] [http-apr-8080-exec-1] NTLM filter, &lt;STRONG&gt;error resolving CIFS host nameGEDALFRESCOA&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="color: #727174; background-color: #ffffff; border: 0px;"&gt;FYI: a hostname is&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG style="border: 0px; font-weight: bold;"&gt;&lt;EM style="border: 0px; font-weight: inherit;"&gt;gedAlfresco&lt;/EM&gt;&lt;EM style="border: 0px; font-weight: inherit;"&gt;&amp;nbsp;,&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/EM&gt;&lt;/STRONG&gt;with a&lt;EM style="border: 0px; font-weight: inherit;"&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/EM&gt;&lt;STRONG style="border: 0px; font-weight: bold;"&gt;&lt;EM style="border: 0px; font-weight: inherit;"&gt;FQDN&amp;nbsp;&amp;nbsp;&lt;A href="http://gedalfresco.gct.com.tn:8080/share/page/" rel="nofollow noopener noreferrer" style="color: #1e88e5; border: 0px; font-weight: inherit; text-decoration: none; padding: 0px calc(12px + 0.35ex) 0px 0px;" target="_blank"&gt;http://gedalfresco.gct.com.tn:8080/share/page/&lt;/A&gt;&amp;nbsp; &amp;nbsp;&lt;/EM&gt;&lt;/STRONG&gt;returns&lt;STRONG style="border: 0px; font-weight: bold;"&gt;&lt;EM style="border: 0px; font-weight: inherit;"&gt;&amp;nbsp;&lt;SPAN style="color: #000000; border: 0px;"&gt;Login authentication failed. Please close and re-open Safari to try again.&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="color: #000000; border: 0px; font-weight: inherit;"&gt;on&amp;nbsp; chrome&amp;nbsp;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/EM&gt;&lt;/STRONG&gt;&lt;SPAN style="color: #000000; border: 0px; font-weight: inherit;"&gt;but the login page appears&amp;nbsp; on&lt;/SPAN&gt;&lt;STRONG style="border: 0px; font-weight: bold;"&gt;&lt;SPAN style="color: #000000; border: 0px; font-weight: inherit;"&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;EM style="color: #000000; border: 0px; font-weight: inherit;"&gt;IE .&lt;/EM&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 13 Mar 2018 07:27:43 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/problems-on-configuring-sso-kerberos-against-active-directory/m-p/60864#M21325</guid>
      <dc:creator>mbedoui</dc:creator>
      <dc:date>2018-03-13T07:27:43Z</dc:date>
    </item>
    <item>
      <title>Re: Problems on Configuring SSO (Kerberos )against Active Directory</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/problems-on-configuring-sso-kerberos-against-active-directory/m-p/60865#M21326</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Probably you missed&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #727174; background-color: #ffffff; border: 0px; font-weight: 400;"&gt;ntlm.authentication.sso.enabled=false&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #727174; background-color: #ffffff; border: 0px; font-weight: 400;"&gt;configuration.&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 13 Mar 2018 08:31:25 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/problems-on-configuring-sso-kerberos-against-active-directory/m-p/60865#M21326</guid>
      <dc:creator>angelborroy</dc:creator>
      <dc:date>2018-03-13T08:31:25Z</dc:date>
    </item>
    <item>
      <title>Re: Problems on Configuring SSO (Kerberos )against Active Directory</title>
      <link>https://connect.hyland.com/t5/alfresco-forum/problems-on-configuring-sso-kerberos-against-active-directory/m-p/60866#M21327</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I would like to thank you for your support and your time , it's works :&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2018-03-13 17:41:22,941 DEBUG [org.alfresco.web.app.servlet.KerberosAuthenticationFilter] [http-apr-8080-exec-7] Authentication not required (filter), chaining ...&lt;BR /&gt;2018-03-13 17:41:22,948 DEBUG [org.alfresco.web.app.servlet.KerberosAuthenticationFilter] [http-apr-8080-exec-10] Authentication not required (filter), chaining ...&lt;BR /&gt;2018-03-13 17:41:22,995 DEBUG [org.alfresco.web.app.servlet.KerberosAuthenticationFilter] [http-apr-8080-exec-1] Found a session user:&amp;nbsp;*****&lt;BR /&gt;2018-03-13 17:41:22,997 DEBUG [org.alfresco.web.app.servlet.KerberosAuthenticationFilter] [http-apr-8080-exec-1] Authentication not required (user), chaining ..&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 13 Mar 2018 16:58:25 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-forum/problems-on-configuring-sso-kerberos-against-active-directory/m-p/60866#M21327</guid>
      <dc:creator>mbedoui</dc:creator>
      <dc:date>2018-03-13T16:58:25Z</dc:date>
    </item>
  </channel>
</rss>

