RDS Farm Server 2012 Single Sign On Configuration


hi

i cant make sso kerberos authentication work in server 2012 rds farm.  here background:

i have created server 2012 rds farm (called aplrdfarm).  has 2 session hosts in farm(rd1 , rd2).

i have amended relevant gpo's following: http://blogs.msdn.com/b/rds/archive/2007/04/19/how-to-enable-single-sign-on-for-my-terminal-server-connections.aspx?pageindex=2

this giving users 'your credentials did not work' if input password again in uac box lets them connect.

the rdp files point aplrdfarm , load balancing on connection broker picks relvant session host.

there not entry in ad (terminal server ou) for and aplrdfarm there in dns (this entry points static addresses of session hosts).  should create computer object in ternimal services ou called aplrdfarm?

i have have configured 3 self signing certificates on connection broker in 'edit deployments' section.  error may lie.  should name/subject sso,publishing , remote app certificates name of aplrdfarm , should these published each session host.

if not case can please point me in right direction.

kind regards

danny

hi danny,

i have had closer you.

for trying achieve, recommend using the farm name. redirection best suited vdi pools it was worth try round kerberos issue.

i take using trusted certificates and a san certificate/wild card has been used for farm. confirm have configured certificates in rootcimv2terminalservices. please see following link: http://ryanmangansitblog.wordpress.com/2013/03/10/configuring-rds-2012-certificates-and-sso/

do you have rd gateway, if have configured rdsh farm in rap , cap policy's.

are using dns round robin or hardware load balancer.

the issue face kerberos authentication & load balanced address's there not ad object.  

when try connect single server presented message ?

are able manually connect farm workstation /use rdp file and issues purely thin clients.

regards,

 





Windows Server  >  Remote Desktop Services (Terminal Services)



Comments

Popular posts from this blog

server manager error: ADAM.events.xml could not be enumerated.

Cannot access Anywhere Access using domain name?

WMI Failure: Unable to update Local Resource Group