I have done kerberos integration with sharpeoint servers but haven't tried with .net web application anymore. I would like to know is there a specific way to configure a .net web application to use kerberos only???
In sharepoint, there is a configuration on the site collection zone to switch authentication type fom NYLM to Kerberos. Is that similar to a web application also??? If yes, how and where to configure in the web application???
Appreciate any help on this. Thx in advance.
Hi cyclops, thanks for your reply. Its was helpful.
One more thing I wanted to know is, when you are running sharepoint as your frontend, you will be configuring the SPN on sharpeoint service account. But in .net web application I don't see a specific service account on which the application is running on.
NB: Web application in IIS is configured to use "Integrated Windows Authentication".
In such case, onwhich account should I create SPN?
The SPN would need to be created for the account under which the application pool for your website is running. You would need to ensure that the application pool for your website is running as a domain user, you would then configure your SPNs and delegation for this user.