Link to home
Start Free TrialLog in
Avatar of mansoornazar
mansoornazarFlag for Afghanistan

asked on

Enabling kerberos authentication for mapi clients for Exchange 2010 and outlook 2010 users.



few of the users outlook got disconnected and when we did more research on the issue we find the Issue with the authentication as with outlook 2010 it set with a negotiate authentication by default and when we change it to kerberos password authentication. Problem has been sorted out. But the issue has been widespread to one site and we want to push the kerberos authentication for all mapi client using the group policy.

Please help me who we can proceed on this. It would be good if you provide the detailed steps.


[Also i found one Article- http://blogs.technet.com/b/exchange/archive/2011/04/15/recommendation-enabling-kerberos-authentication-for-mapi-clients.aspx]

But this is to change something with CAS and we want to do the kerberos using the group policy.
Avatar of Radweld
Radweld
Flag of United Kingdom of Great Britain and Northern Ireland image

The way I understood this was Outlook will negotiate the strongest authentication protocol possible. If kerberos is available it will use it. If you followed the blog and enabled Kerberos authentication on the CAS server then the clients should use it. forcing Kerberos in my opinion is a bad idea because although you want the clients to use Kerberos, you want them to fall back to NTLM if they can't authenticate with Kerberos.
ASKER CERTIFIED SOLUTION
Avatar of e_aravind
e_aravind
Flag of India image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial