Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Mike Lewis on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

BO XI R2 Server Authentication Problem

Status
Not open for further replies.

djtech2k

MIS
Jul 24, 2003
1,097
US
I have an instance of XI R2 deployed on a 2003 platform. It is running the Tomcat/Apache Java version. I use Oracle as my repo and DW.

I have had authentication setup for a long time using the LDAP connection and connecting it to ADAM (Active Directory Application Mode). However, I now would like to try having it directly connect to Active Directory, my domain service. I have configured everything the way it makes sens e and read every related topic in here about it, but I have some problems. As of now, I can log into CMS with one of my AD accounts. However, when I try to log into InfoView, I get the blasted error of SI_KERBEROS.....

I have it configured with the service account, domain, etc all configured correctly. I have a group in AD setup for mapping and it accepts/resolves the group in AD. I want to use NTLM and have it selected, but when I do that I get the error mentioned above. I have also tried the Kerberos way. I selected kerberos, my service account is trusted for delegation, and I put in the SPN for the account in the following format: bobj@mydomain.net.

When I try it that way, I get an error talking about not being able to find my user or not being a part of the mapped group.

In either case, it does not work. I want to move to the IIS/.NET solution, but I am stuck with this thing for a while before I can even begin.


Any ideas?
 
Have read through boe_xi_r2_AD_authentication_on_Java_App_Servers?

It can be downloaded from support.businessobjects.com
 
Yes, but I think its pretty useless. I have read a few places that people have gotten AD Auth to work with the NTLM whereas the pdf says it has to use kerberos, which is a pain.

As usual, their docs are not very good and leaves a LOT to be imagined.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top