Quantcast
Viewing all articles
Browse latest Browse all 5403

SAP BI4.1 Windows SSO Users not syn with AD

Dear support,

 

I am using SBOP4.1 under windows .

my domain controller name is DC.LOCAL

Service user name is   bossodev

 

steps I have done

 

1.  create service user with name bossodev  and select two password never expire and can not change password option

2.  create group with name bogroupdev  and assign 3 users into this group

3.  Add Domain/biservice user to local Administrators group and assign biservice user the right 'Act as part of

     Operating System' in the Local Security Policy snap-in

4. create Service Principal Names with  c:\>setspn -a BICMCDEV\bossodev.dc.local  bossodev

5. and check through c:\>setspn -l bossodev

6. goto bossodev user progerties and delegation and select 'Trust this user for delegation to any service (Kerberos only)’.

7. In Central Management Console CMC under AD Authentication area perform the following tasks.

   AD Administration Name = DC\bossodev

   Default AD Domain: DC.LOCAL

   Add AD Group: DC\bogroupdev

   Use Kerberos Authentication

  Service principal name = BICMCDEV\bossodev.dc.local

  Enable Single Sign On for selected authentication mode

8. stop tomcat and assign bossodev user to SIA server and start tomcate

 

now issue is my Windows AD group is replicate to BI ( I See in CMC DC\bogroup) but users are not create ( 3 users which is already assign to this group)

I also create user in CMC manulally its created both Enterprise and Windows AD

 

Please help me regarding this isse

 

Regards


Viewing all articles
Browse latest Browse all 5403

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>