Browser not correctly configured for Kerberos authentication
This stack trace indicates that the browser is not sending the Kerberos token. Validate that the browser is configured for Kerberos authentication with the BMC Atrium Single Sign-On server. Verify that the principals in the BMC Atrium Single Sign-On Kerberos configuration and the user account running the browser are all in the same realm. Lastly, when multiple services are running on the same host or non-standard ports are being used for HTTP and HTTPS connections, review the following Microsoft article for more information, see http://support.microsoft.com/kb/908209.
amJAAS:06/24/2011 02:35:46:834 PM CDT: Thread[http-8443-2,5,main]
Exception: com.sun.identity.authentication.spi.AuthLoginException: Invalid Kerberos token.
amJAAS:06/24/2011 02:35:46:834 PM CDT: Thread[http-8443-2,5,main]
Set firstRequiredError to com.sun.identity.authentication.spi.AuthLoginException: Invalid Kerberos token.
amLoginModule:06/24/2011 02:35:46:834 PM CDT: Thread[http-8443-2,5,main]
ABORT return.... false
amJAAS:06/24/2011 02:35:46:834 PM CDT: Thread[http-8443-2,5,main]
abort ignored
amAuth:06/24/2011 02:35:46:834 PM CDT: Thread[http-8443-2,5,main]
LOGINFAILED Error....
amAuth:06/24/2011 02:35:46:834 PM CDT: Thread[http-8443-2,5,main]
Exception :
com.sun.identity.authentication.spi.AuthLoginException(1):null
com.sun.identity.authentication.spi.AuthLoginException(2):Invalid Kerberos token.
com.sun.identity.authentication.spi.AuthLoginException: Invalid Kerberos token.
at com.sun.identity.authentication.modules.windowsdesktopsso.WindowsDesktopSSO.process(WindowsDesktopSSO.java:146)
at com.sun.identity.authentication.spi.AMLoginModule.wrapProcess(AMLoginModule.java:866)
Comments
Log in or register to comment.