Hi,can you give some more information about your environment?- did you try to access a workarea with a local user?- do you use domain groups or server local groups as workarea shared groups?- are your domain users a direct member of your workarea shared group or do you use nested groups?And also:- did you check your domain_list value in section [iwserver] in iw.cfg?- did you try to get some debug user information through the show_user_list=true key in the iw.cfg?RegardsStefan
I think you're already aware of the NTLM issues on TS671 .Teamsite uses the Windows system call "LogonUser()" to authenticate TeamSite users. This call uses either NTLM(Windows NT4 -legacy) or Active Directory(Kerberos 2000 & 2003-new), depending on how the machine that TeamSite is running on is configured .After the initial authentication, TeamSite writes a cookie to the browser that is used to identify that user for the rest of the session. Currently, Kerberos is the only means of authentication Teamsite support for TeamSite -671(+SP1). as NTLM support was dropped .Approach your IT Guys to disable NTLM(through registry) on this Server .
I had one more query?How does Teamsite check group membership? Does it rely on Windows mechanism? Or does it use some own mechanism?