How to configure Kerberos Authentication in Browser

Manish Chawda 431 Reputation points
2021-12-24T12:53:49.297+00:00

Hi,

I have Sophos UTM where everynow & then need to login Captive Portal to enter credentials. I came across Kerberos Authentication wherein if I configure in browser using GPO then the UTM Captive Portal will use those credentials and no need to additionally enter credentials.

Can anyone guide me w.r.t Kerberos Authentication configuration in browser to get the above workable.

Manish

Windows for business Windows Server User experience Other
0 comments No comments
{count} votes

Accepted answer
  1. Limitless Technology 39,916 Reputation points
    2021-12-30T10:31:10.753+00:00

    Hi @Manish Chawda

    Thank you for your question and for getting in touch. My name is Samuel and I would be more than happy to help you with your query.

    To do this you can follow the steps below:

    1) Add the user computers to the Active Directory domain.

    2) For instructions, see your Active Directory documentation.

    3) Log in to the Active Directory domain, rather than the computer.

    4) (Conditional) If you are using Internet Explorer, configure the browser to trust the appliance:

    a) Click Tools > Internet Options > Security > Local intranet > Sites > Advanced. In the Add this website to the zone field, enter the Base URL for the appliance, then click Add.

    b) In the configuration example, this URL is serv1.cloudaccess.com.

    c) Click Close, then click OK.

    d) Click Tools > Internet Options > Advanced.

    e) Verify in the Security section that Enable Integrated Windows Authentication is selected, then click OK.

    f) Restart the browser.

    5) (Conditional) If you are using Firefox, configure the browser to trust the appliance:

    a) In the URL field, specify about:config.

    b) In the Filter field, specify network.n.

    c) Double-click network.negotiate-auth.trusted-uris.

    d) This preference lists the sites that are permitted to engage in SPNEGO Authentication with the browser. Specify a comma-delimited list of trusted domains or URLs.

    e) For this example configuration, add serv1.cloudaccess.com to the list and Click OK, then restart your browser.

    If the answer is helpful, please vote positively and accept the answer.

    Regards,
    Samuel

    1 person found this answer helpful.
    0 comments No comments

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.