Kerio Connect and NTLM authorization [message #143927] |
Wed, 19 September 2018 08:27 |
aleks_spv
Messages: 1 Registered: September 2018
|
|
|
|
Hello! For the test in the domain, installed kerio connect 9.2.7 on win server 2012.
Users connected from the domain, everything works fine, users can log in through the Web interface.
We have a terminal server, Mozzila Thunderbird version 52.8.0 is installed on the mail client for ease of administration.
In the settings of the mail client there is an NTLM authentication option.
I would like to save users from entering passwords of the mail client, because passwords change every month in connection with the security policy, after 3 unsuccessful attempts to enter the wrong password, the user account is blocked for 10 minutes, this causes inconvenience to both administrators and users.
By ntlm we have successfully run such services as openfire, sharepoint portal.
Here's the kerio something that does not work. The settings specify the NT domain name, Security - the involved methods of authentication of the ntlm check mark are. On the mail client, the authentication method for the pop server and smtp - ntlm was chosen. In this case, the mail client still requests a password.
Tried to connect Outlook - put a tick on the SPA, the situation is the same, the password is requested. Tried to turn off all authentication methods and leave only ntlm on the kerio, this also did not help.
In the logs when connecting to the mail client the following:
[19/Sep/2018 12:19:38][2484] {pop3s} POP3 server session begin; client connected from 192.168.0.5:64454
[19/Sep/2018 12:19:38][2484] {pop3s} Command: CAPA
[19/Sep/2018 12:19:38][2484] {pop3s} Command: AUTH NTLM
Then comes the window of the mail client with the offer to enter the password, if you press cancel:
[19/Sep/2018 12:19:39][2484] {pop3s} Connection to POP3 server 192.168.201.9 lost: connection closed by remote host.
[19/Sep/2018 12:19:39][2484] {pop3s} Session end
Tell me, is it possible to configure it for passwordless authentication of ntlm?
Thank you!
|
|
|