<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.msdn.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>&amp;quot;Kerberos delegation .. end to end&amp;quot;  Part III</title><link>http://blogs.msdn.com/spatdsg/archive/2007/11/26/kerb-part-3.aspx</link><description>When we last left off, we had just installed SQL. Also my standard disclaimer for this series: First off let me say that I am not a “SQL guy” nor am I an “IIS guy” .. I am primarily a platforms OS kinda guy. However, I can wing my way thru some of those</description><dc:language>en-US</dc:language><generator>CommunityServer 2.1 SP1 (Build: 61025.2)</generator><item><title>re: "Kerberos delegation .. end to end"  Part III</title><link>http://blogs.msdn.com/spatdsg/archive/2007/11/26/kerb-part-3.aspx#7372223</link><pubDate>Fri, 01 Feb 2008 13:25:05 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:7372223</guid><dc:creator>Morten Lerudjordet</dc:creator><description>&lt;p&gt;I enjoy these deep dives immensely. Looking forward too constrained delegation.&lt;/p&gt;
&lt;p&gt;Keep up the good work!&lt;/p&gt;
&lt;p&gt;Lerun&lt;/p&gt;
</description></item><item><title>re: "Kerberos delegation .. end to end"  Part III</title><link>http://blogs.msdn.com/spatdsg/archive/2007/11/26/kerb-part-3.aspx#7381128</link><pubDate>Sat, 02 Feb 2008 05:54:26 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:7381128</guid><dc:creator>AlexD</dc:creator><description>&lt;p&gt;So...when we'll have a pleasure to read &amp;quot;Part IV&amp;quot; :)?&lt;/p&gt;
</description></item><item><title>re: "Kerberos delegation .. end to end"  Part III</title><link>http://blogs.msdn.com/spatdsg/archive/2007/11/26/kerb-part-3.aspx#8315181</link><pubDate>Tue, 18 Mar 2008 16:39:29 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:8315181</guid><dc:creator>Chuck P</dc:creator><description>&lt;p&gt;Hopefully part 5 will be &amp;quot;getting this all to work with NLB&amp;quot; ;) &amp;nbsp;Which is the piece I am currently having issues with.&lt;/p&gt;
</description></item><item><title>Troubleshooting Kerberos Problems</title><link>http://blogs.msdn.com/spatdsg/archive/2007/11/26/kerb-part-3.aspx#8395093</link><pubDate>Tue, 15 Apr 2008 01:20:29 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:8395093</guid><dc:creator>Vu's Technical Notepad</dc:creator><description>&lt;p&gt;Last week, I spent an all-nighter troubleshooting a Kerberos issue for a MOSS installation. Although&lt;/p&gt;
</description></item><item><title>re: "Kerberos delegation .. end to end"  Part III</title><link>http://blogs.msdn.com/spatdsg/archive/2007/11/26/kerb-part-3.aspx#8399489</link><pubDate>Wed, 16 Apr 2008 22:54:27 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:8399489</guid><dc:creator>Robert Hanlon</dc:creator><description>&lt;p&gt;So much information to digest - thank you!. We are running into this issue intermittantly (Login failed for user 'NT AUTHORITY\ANONYMOUS LOGON'). The App pool is configured to use Network Service so in your example above you gave permissions for delegation to the service running your app pool (SVC_IISPool) - there is no specific &amp;quot;Network Service&amp;quot; user to configure. We added delegation to the IIS Server itself to be able to delegate the MSSQLSvc on the database server. Like I said, it's intermittant - one minute it's working, then next it is not! Any tips to trap and correct this behavior?&lt;/p&gt;
</description></item><item><title>re: "Kerberos delegation .. end to end"  Part III</title><link>http://blogs.msdn.com/spatdsg/archive/2007/11/26/kerb-part-3.aspx#8400345</link><pubDate>Thu, 17 Apr 2008 04:44:41 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:8400345</guid><dc:creator>SpatDSG</dc:creator><description>&lt;p&gt;did you enable the kerberos logging I outlined?&lt;/p&gt;
&lt;p&gt;That - and a network sniff ( if you can get one ) will be really helpful.&lt;/p&gt;
&lt;p&gt;Also we want to see the security audit logs to track where the logon worked and or failed as the end user.&lt;/p&gt;
</description></item><item><title>re: "Kerberos delegation .. end to end"  Part III</title><link>http://blogs.msdn.com/spatdsg/archive/2007/11/26/kerb-part-3.aspx#9305400</link><pubDate>Sun, 11 Jan 2009 09:13:43 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:9305400</guid><dc:creator>vzxqxu</dc:creator><description>&lt;p&gt;GmOVcL &amp;nbsp;&amp;lt;a href=&amp;quot;&lt;a rel="nofollow" target="_new" href="http://mjegmczqtdao.com/&amp;quot;&amp;gt;mjegmczqtdao&amp;lt;/a&amp;gt;"&gt;http://mjegmczqtdao.com/&amp;quot;&amp;gt;mjegmczqtdao&amp;lt;/a&amp;gt;&lt;/a&gt;, [url=&lt;a rel="nofollow" target="_new" href="http://wbswjutneggk.com/"&gt;http://wbswjutneggk.com/&lt;/a&gt;]wbswjutneggk[/url], [link=&lt;a rel="nofollow" target="_new" href="http://hoblelmmtekq.com/"&gt;http://hoblelmmtekq.com/&lt;/a&gt;]hoblelmmtekq[/link], &lt;a rel="nofollow" target="_new" href="http://oxicvrbkyplc.com/"&gt;http://oxicvrbkyplc.com/&lt;/a&gt;&lt;/p&gt;
</description></item></channel></rss>