Hi,
Looking at this article around Kerberos config for FIM Portal, and just wondering whether the last KCD step is correct, as this does not make sense, and when I do it, the FIM Service does not start:
http://social.technet.microsoft.com/wiki/contents/articles/3385.fim-2010-kerberos-authentication-setup.aspx
Step in question:
For the FIM Service to be able to delegate to the FIM Service we would have to:- Open ADUC and locate the service account for the FIM Service (sa_fimsvc)
- Open the properties of sa_fimsvc and choose the delegation tab
- Check Trust this user for delegation to the specified services only
- Check Use Kerberos only
- Click Add...
- Click users or Computers...
- Type the name of your FIM Service service account: sa_fimsvc
- Click Check Names and Click Ok
- Select the FIMService entry and Click Ok
- Click Ok to close the account properties
Thanks
- Edited by Shim Kwan Tuesday, June 30, 2015 10:47 PM