From what I've read holistically, Putting your DCs behind a VIP tends to be problematic because the member server name doesn't match the name of the SPN thus it becomes vehemently unhappy.
Does anyone have experience putting DCs behind a network load balancer
for Kerberos Authentication?
Depending on who you ask, it doesn't really work. I wanted to ask the
group to see if anyone has strong experience in doing it and if it's feasible?
Does anyone have experience putting DCs behind a network load balancer
for Kerberos Authentication?
Depending on who you ask, it doesn't really work. I wanted to ask the
group to see if anyone has strong experience in doing it and if it's feasible?
Sysop: | Keyop |
---|---|
Location: | Huddersfield, West Yorkshire, UK |
Users: | 113 |
Nodes: | 8 (1 / 7) |
Uptime: | 05:24:14 |
Calls: | 2,497 |
Calls today: | 14 |
Files: | 8,644 |
Messages: | 1,902,088 |