Google Chrome support of SPNEGO/Kerberos/Negotiate authentication
Environment
- Google Chrome
- SPNEGO authentication
- e.g. on JBoss Enterprise Application Platform (EAP)
Issue
- issues using SPNEGO with Google Chrome on EAP
- Google Chrome support of SPNEGO, or Kerberos, authentication
Resolution
Except on Windows, Google Chrome supports SPNEGO authentication (Negotiate authentication) ony for servers in a whitelist (--auth-server-whitelist="*domain") or that come from a proxy. In Windows only, if the command-line switch is not present, the permitted list consists of those servers in the Local Machine or Local Intranet security zone (for example, when the host in the URL includes a "." character it is outside the Local Intranet security zone), which is the behavior present in IE. Treating servers that bypass proxies as being in the intranet zone is not currently supported.
This solution is part of Red Hat’s fast-track publication program, providing a huge library of solutions that Red Hat engineers have created while supporting our customers. To give you the knowledge you need the instant it becomes available, these articles may be presented in a raw and unedited form.
Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.
