replication - Agents on Author Dialog Options in AEM -
i not able understand use case when can use ntlm domain, ntlm host, ssl,allow expired certs been used.
any appreciated.
ntlm microsoft's implementation of kerberos protocol. used when author , publishers have 1 or more of following conditions valid:
- not on same windows domain.
- don't share common ad provider.
- kerberos ports (for eg. 88) blocked.
- windows server being accessed via ip address rather it's host name.
ntlm challenge-response protocol these ntlm host , domain names parameters used protocol identify client (which author server in case) along user name , password.
in reality, never use in linux environment , use in modern windows network have better ad security options (like trusted domains , subnets).
ssl options there workaround in situations publisher's https certificate has expired , want continue replication. assuming own publisher server in network, trust publisher server's identity , ignore expired certificated until renew them. can relax ssl rules lower level of encryption , self signed certificates allowed. it's ok trusted networks not recommended in general.
Comments
Post a Comment