Kerberos authentication between multiple domains may fail on LiveCycle Rights Management ES 8.2.1Products affected
Issue
There is an issue in LiveCycle Rights Management ES, version 8.2.1, where Active Directory users who do not belong to the same domain as the LiveCycle ES server cannot log in using Kerberos authentication. The authentication screen appears when the certificate is passed to Acrobat. This behavior is incorrect.
This issue occurs under the following conditions:
- Your LiveCycle ES 8.2.1 environment has two Active Directory domains in a trust relationship with each other.
- The domains are synchronized into two separate User Management domains.
- Kerberos-based authentication is enabled on both domains.
Solution
To resolve this issue, review Kerberos.pdf and follow the instructions.
Doc ID
(kb408491)
Last updated
2009-02-20
Products affected
