MS
Mar 06, 2014Nimbostratus
Kerberos: can't get TGT for HOST/abc@abc.com - Realm not local to KDC
Hi There,
I am trying to get the Kerberos constrained delegation to work, where the client authentication is done via certficate with the BIGIP. The BIGIP uses the further via Kerberos SSO to authenticate to the backend servers. I have tried the options as per the links below http://support.f5.com/kb/en-us/products/big-ip_apm/manuals/product/apm-sso-config-11-1-0/3.html https://devcentral.f5.com/articles/single-sign-on-mit-kerberos-constrained-delegation.UxhzSs4e_DM https://devcentral.f5.com/articles/single-sign-on-mit-kerberos-constrained-delegation-teil-2-debugging.UxhzXc4e_DM(for Troubleshooting
Any hints ?
Thanks