CF2023 Kerberos Authentication running on Windows IIS
I have a internal coldfusion 2023 application running on Windows 2022 server OS with IIS. We have been using MS SQL authentication to connect to the SQL database but organization recently changed policies to use Windows authentication using Kerberos ONLY. I am able to sucessfully connect to the database using NTLM but my org is not accepting NTLM as it is outdated.
I went through the online articles followed the steps but I feel like I am missing something that is required for Kerberos authentication. I am able to successfully connect to the same database from a .NET application running on a Containarized application with Kerberos. Below is what I have done so far but no luck in CF 2023
- Changed the Coldfusion 2023 service to run as Domain account (DEV\userLAN)
- Changed the Coldfusion 2023 service to run as ServiceAccount (DEV\ServiceAccountName)
- used SQL JDBC server with integratedSecurity=true in AdvancedSettings under Data Source in Administrator
- Also tried with JavaKerberos as authentication mechanism in AdvancedSettings
I havebeen trying to find the solution but there is no luck so far. Any help is highly appreciated
- How to know if the SPN is correctly configured? does the SPN needs to be registered with the Domain account used in the CF 2023 applicaiton service under services.msc or Does it need to be registered with Windows Server name?
- Is there anything that you think I am missing?
Thank you
- Gowtham
