Guest lobezno Posted December 24, 2008 Posted December 24, 2008 Hello, I'm workin with kerberos tickets and Constrained delegation. Is it viable that for an Explorer navigator to reuse a ticket kerberos that has been negotiated (on behalf of another user) between an ISA Server and an IIS Server, to call that IIS Server with that Authoritation? It means: we have created a ticket kerberos inside ISA (custom webfilter), this ticket is delegated to an IIS, and a SQL Server after (simple kerberos constrained delegation), but in the response, there is no ticket returns to the client (internet explorer). This is possible?? Thanks! Quote
Guest Peter Foldes Posted December 24, 2008 Posted December 24, 2008 What is it that you did not understand with the answer in your previous post -- Peter Please Reply to Newsgroup for the benefit of others Requests for assistance by email can not and will not be acknowledged. "lobezno" <lobezno@discussions.microsoft.com> wrote in message news:391838A1-D460-4C32-A99A-96DDD4287E0A@microsoft.com...<span style="color:blue"> > Hello, > I'm workin with kerberos tickets and Constrained delegation. > > Is it viable that for an Explorer navigator to reuse a ticket kerberos that > has been negotiated (on behalf of another user) between an ISA Server and an > IIS Server, to call that IIS Server with that Authoritation? > > It means: we have created a ticket kerberos inside ISA (custom webfilter), > this ticket is delegated to an IIS, and a SQL Server after (simple kerberos > constrained delegation), but in the response, there is no ticket returns to > the client (internet explorer). This is possible?? > > Thanks! > > </span> Quote
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.