SAP Knowledge Base Article - Preview

1372956 - Using Kerbtray to diagnose client Kerberos exchanges


You are troubleshooting a Kerberos based authentication problem, and one or more of the following conditions exists:

  • You have a single client, or several clients, that are unable to authenticate to InfoView using Kerberos.
  • You are experiencing login related problems, but need to verify if the client is attempting a Kerberos exchange.
  • You would like to see the SPNs that are being utilized to exchange a Kerberos ticket
  • You are attempting to track down where the 'break in the chain' is occurring with Kerberos transactions

This program will allow you to see the Kerberos tickets that are being exchanged across the network, and what SPN is being used for this transaction.  This usefulness of this tool can be greatly enahanced when used in combination with a TCP tracing tool, such as Wireshark.  See the 'References' section below for more information on TCP tracing.

Image/data in this KBA is from SAP internal systems, sample data, or demo systems. Any resemblance to real data is purely coincidental.



SAP BusinessObjects Business Intelligence platform R2 ; SAP BusinessObjects Enterprise XI ; SAP BusinessObjects Enterprise XI 3.0 ; SAP BusinessObjects Enterprise XI 3.1


kerberos, kerbtray, tracing, active directory, ad, howto, third party , KBA , BI , Business intelligence solutions , How To

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP ONE Support launchpad (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.