GFI Software

Welcome to the GFI Software community forum! For support please open a ticket from https://support.gfi.com.

Home » GFI User Forums » Kerio Connect » Kerio Connect and NTLM authorization (it possible to configure kerio connect for authentication of ntlm?)
help-browser.png  Kerio Connect and NTLM authorization [message #143927] Wed, 19 September 2018 08:27
aleks_spv is currently offline  aleks_spv
Messages: 1
Registered: September 2018
Hello! For the test in the domain, installed kerio connect 9.2.7 on win server 2012.
Users connected from the domain, everything works fine, users can log in through the Web interface.

We have a terminal server, Mozzila Thunderbird version 52.8.0 is installed on the mail client for ease of administration.
In the settings of the mail client there is an NTLM authentication option.
I would like to save users from entering passwords of the mail client, because passwords change every month in connection with the security policy, after 3 unsuccessful attempts to enter the wrong password, the user account is blocked for 10 minutes, this causes inconvenience to both administrators and users.
By ntlm we have successfully run such services as openfire, sharepoint portal.

Here's the kerio something that does not work. The settings specify the NT domain name, Security - the involved methods of authentication of the ntlm check mark are. On the mail client, the authentication method for the pop server and smtp - ntlm was chosen. In this case, the mail client still requests a password.
Tried to connect Outlook - put a tick on the SPA, the situation is the same, the password is requested. Tried to turn off all authentication methods and leave only ntlm on the kerio, this also did not help.
In the logs when connecting to the mail client the following:

[19/Sep/2018 12:19:38][2484] {pop3s} POP3 server session begin; client connected from 192.168.0.5:64454
[19/Sep/2018 12:19:38][2484] {pop3s} Command: CAPA
[19/Sep/2018 12:19:38][2484] {pop3s} Command: AUTH NTLM

Then comes the window of the mail client with the offer to enter the password, if you press cancel:

[19/Sep/2018 12:19:39][2484] {pop3s} Connection to POP3 server 192.168.201.9 lost: connection closed by remote host.
[19/Sep/2018 12:19:39][2484] {pop3s} Session end

Tell me, is it possible to configure it for passwordless authentication of ntlm?
Thank you!

Previous Topic: Edit the "Mail Delivery Subsystem" message
Next Topic: Kerio Connect does not start after installation
Goto Forum:
  


Current Time: Sun Sep 24 23:06:10 CEST 2023

Total time taken to generate the page: 0.04282 seconds