Kerberos authentication between multiple domains may fail on LiveCycle Rights Management ES 8.2.1
Issue
There is an issue in LiveCycle Rights Management ES, version 8.2.1, where Active Directory users who do not belong to the same domain as the LiveCycle ES server cannot log in using Kerberos authentication. The authentication screen appears when the certificate is passed to Acrobat. This behavior is incorrect.
This issue occurs under the following conditions:
- Your LiveCycle ES 8.2.1 environment has two Active Directory domains in a trust relationship with each other.
- The domains are synchronized into two separate User Management domains.
- Kerberos-based authentication is enabled on both domains.
Solution
To resolve this issue, review Kerberos.pdf and follow the instructions.
This content requires Flash
To view this content, JavaScript must be enabled, and you need the latest version of the Adobe Flash Player.
Download the free Flash Player now!
