SAP Knowledge Base Article - Preview

1837959 - Error: "Security server failed to decrypt the Kerberos ricket sent by the client. Contact your system administrator to make sure Kerberos authentication is confgiured properly.(FWB 00004)"


  • Windows AD user is unable to login in manage servers in Central Configuration Manager


  • Also related to this case you can receive the above error intermittently if using clustered CMS's and the SPN in the CMC matches the service account for less than all of them. In that case even when attempting to login to 1 CMS the request may be sent to another and it makes it difficult to see there is an issue. So check all the CMS's to verify they all are running under the same service account with the matching SPN in the CMC. Below is the same error when logging into BI launchpad or CMC


  • The Error message in CMC or BI launchpad can be "Account information not recognized: The active directory authentication plugin could not authenticate you at this time. Please try again. If the problem persists, please contact your technical support department (FWM 00005)



  • SAP BusinessObjects XI 3.1 SP05
  • Tomcat 5.5


SAP BusinessObjects Business Intelligence platform 4.0


FWB 00004, CCM, BI 4.0

, KBA , BI-BIP-AUT , Authentication, ActiveDirectory, LDAP, SSO, Vintela , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.