Dear support,
I am using SBOP4.1 under windows .
my domain controller name is DC.LOCAL
Service user name is bossodev
steps I have done
1. create service user with name bossodev and select two password never expire and can not change password option
2. create group with name bogroupdev and assign 3 users into this group
3. Add Domain/biservice user to local Administrators group and assign biservice user the right 'Act as part of
Operating System' in the Local Security Policy snap-in
4. create Service Principal Names with c:\>setspn -a BICMCDEV\bossodev.dc.local bossodev
5. and check through c:\>setspn -l bossodev
6. goto bossodev user progerties and delegation and select 'Trust this user for delegation to any service (Kerberos only)’.
7. In Central Management Console CMC under AD Authentication area perform the following tasks.
AD Administration Name = DC\bossodev
Default AD Domain: DC.LOCAL
Add AD Group: DC\bogroupdev
Use Kerberos Authentication
Service principal name = BICMCDEV\bossodev.dc.local
Enable Single Sign On for selected authentication mode
8. stop tomcat and assign bossodev user to SIA server and start tomcate
now issue is my Windows AD group is replicate to BI ( I See in CMC DC\bogroup) but users are not create ( 3 users which is already assign to this group)
I also create user in CMC manulally its created both Enterprise and Windows AD
Please help me regarding this isse
Regards