cancel
Showing results for 
Search instead for 
Did you mean: 

NW SSO 2.0 and ABAP SPNEGO

Former Member
0 Kudos

Hi All,

This question has been raised a few times by others but I haven't been able to find an answer.

I have set up SSO 2.0 SP3 and authentication using Kerberos by following the excellent 4 part videos.  I can successfully log in with SAPGUI but when I try connecting via the icm (e.g. /sap/bc/ping) I am challenged with a domain logon popup.  If I type in my domain username and password, I successfully log on.  If I cancel that popup, a new popup will appear with basic authentication.

How do I stop the domain logon popup?

All other configuration appears ok.

Report SNCAX_TEST returns all positives.
Integrated Windows Authentication has been enabled

I have verified SAP sends the www-authentication: Negotiate header.

Any suggestions?

Thanks,

Damien.

Accepted Solutions (1)

Accepted Solutions (1)

Former Member
0 Kudos

Hi Again,

As fate would have it, spent a week on this and I only just realised the problem.  In the Internet Zones > Local Intranet, I had to 1) set the user authentication to Automatic logon with current username and password.  But more importantly, 2) it also wasn't automatically detecting the server was actually in the same Intranet Zone (this can be checked by right click > Properties).  So I added the site to the advanced list (Options > Security > Local Intranet > Sites > Advanced).

All works now.

Thanks,

Damien.

Answers (0)