You are viewing limited content. For full access, please sign in.

Question

Question

Web Access. Windows Authentication and Kerboeros

asked on April 13, 2015

Hello….

We are having struggles with setting up Kerberos to allow Windows authentication with Web Access.  We use a Laserfiche ID linked to a Windows user id model to enable access to our LF resources.

 

The Web Access configuration for our repositories is set to “Auto-login using integrated Windows authentication”  and  Laserfiche and Windows accounts are Allowed for authentication.  In IIS configuration, “Windows Authentication” is Enabled and “Anonymous Authentication” is Disabled.

 

 Attempting access to LF repos using Web Access yields Access denied. [9013]

 

Our systems group is responsible for setting up Kerberos and SPNs to enable the Web Access VM to communicate with the LF server VM.  We are being advised by our systems group that the only way “Auto-login using integrated Windows authentication” will work is to convert all of our current “linked LF to Windows ID users” to Windows AD users/groups. 

 

Is it possible to set up Kerberos to accept Windows Authentication using our current LF ID model?

 

Web Access v9.0.2 and IIS v8.5 on Server 2012 R2

Thanks in advance.

 

Dennis  

0 0

Answer

SELECTED ANSWER
replied on April 14, 2015

I don't have a setup available to test on, but I would expect this to work after you configure Kerberos.  For the purposes of looking up the session trustee, it shouldn't matter to LFS if the authentication provider is Kerberos or NTLM.

0 0

Replies

replied on April 14, 2015

Hi Brian...

Thank you for the information.

0 0
You are not allowed to follow up in this post.

Sign in to reply to this post.