Book

Configuring and troubleshooting WDSSO in AM/OpenAM

This book provides information on configuring and troubleshooting Windows Desktop SSO (WDSSO) in AM/OpenAM. Known issues are included along with solutions.


Printer friendly view

Table of Contents

  • 1 Configuring WDSSO
    • 1.1 How do I set up Windows Desktop SSO in AM/OpenAM (All versions)?
    • 1.2 How do I set up the WDSSO authentication module in AM/OpenAM (All versions) in a load balanced environment?
    • 1.3 How do I specify multiple Kerberos servers in AM/OpenAM (All versions) for failover purposes?
    • 1.4 How do I get the WDSSO authentication module to work in AM/OpenAM (All versions) with the IBM Kerberos implementation?
  • 2 How do I use the WDSSO module to authenticate via REST in AM/OpenAM (All versions)?
  • 3 Troubleshooting WDSSO
    • 3.1 How do I troubleshoot WDSSO and Kerberos issues in AM/OpenAM (All versions)?
    • 3.2 How do I enable debug logging for troubleshooting WDSSO and Kerberos issues in AM/OpenAM (All versions)?
  • 4 Known issues
    • 4.1 WDSSO authentication fails with GSSException: Failure unspecified at GSS-API level error in AM/OpenAM (All versions)
    • 4.2 WDSSO authentication fails with Pre-authentication information was invalid error in AM/OpenAM (All versions)
    • 4.3 WDSSO/Kerberos authentication fails in AM/OpenAM (All versions) with an HTTP 400 Bad Request response
    • 4.4 Kerberos token is not valid error when authenticating with Windows Desktop SSO in AM/OpenAM (All versions) using Internet Explorer
    • 4.5 Authenticating with Windows Desktop SSO in AM/OpenAM (All versions) does not proceed when using non-Internet Explorer browser
    • 4.6 Unable to obtain password from user error when WDSSO authentication fails in AM/OpenAM (All versions)
    • 4.7 Clock skew too great (37) error when WDSSO authentication fails in AM/OpenAM (All versions)
    • 4.8 WDSSO authentication fails with java.lang.ArrayIndexOutOfBoundsException after upgrading to, or installing AM 5.1.1
    • 4.9 SAML redirect is ignored when doing an IdP or SP initiated SSO with WDSSO/Kerberos authentication in OpenAM 13.0 and 13.5
Loading...