SAP Knowledge Base Article - Preview

2501620 - Configuring Kerberos/SPNEGO for SAP GUI in a Multi-Domain environment with non-trusted domains


  • You are configuring SNC for Kerberos using SAP Single Sign-On 3.0 or SNC Client Encryption 2.0.
  • You have a Multi-Domain environment and there is no trust between domains.
  • You want to know what considerations/implementations should be made in this scenario.



  • SAP Single Sign-On 3.0
  • SNC Client Encryption 2.0


SAP Single Sign-On 3.0


forest, multiple, AD, active directory, service account, keytab, DN, controller, SPN, service principal name, UPN, user, KDC, central, server, windows, SNCWIZARD , KBA , BC-IAM-SSO-SL , Secure Login , How To

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP ONE Support launchpad (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.