Page 1 of 1

Authentication against AD Question

Posted: Thu Aug 17, 2006 11:59 am
by Derek
I have what hopefully is a simple question about user authentication against AD. The Admin Manual says "You can then configure Single Sign-On authentication with a KDC on the master domain controller that uses Microsoft Active Directory". We were having problems with our "master domain controller" and it has since been yanked, fixed, broken, and now yanked again. So, another DC has assumed the master role.

To get to the point, I need to set up the authentication against AD soon—hopefully before the broken (desired master) DC is fixed. If I set up authentication by starting off with running "ktpass" on the current master DC, when the new master DC is put in place will everything still work? Will anything need to be modified? Any other precautions, points of interest, etc?

Posted: Fri Aug 18, 2006 10:52 am
by jim mullady
Derek,

Once you have created the Principal user, it should be replicated over to the new master DC when it is brought back on line. Check out this link to view the steps to setup SSO.

http://www.scalix.com/community/viewtopic.php?t=3154

Posted: Fri Aug 18, 2006 11:54 am
by Derek
I have read the instructions a couple of times now actually. Since I don't really have a great understanding of AD, I just wanted to make sure there wouldn't be any issues when a new master DC was introduced.

Thanks Jim, I hope everything is going well. I bet they're keeping you pretty busy.