Turn on resource based Kerberos constrained delegation
When you configure resource based Kerberos constrained delegation (KCD) for the
Docsservice, consider the following:
- OnlyWindowsauthentication inMicrosoft SharePointis supported. Forms-based and claims-based authentication are not supported.
- IP addresses are not allowed in theMicrosoft SharePointURLs and File Share paths that you configure inBEMS.
- In theBlackBerry Enterprise Mobility Server Dashboard, underBlackBerry Services Configuration, clickDocs.
- In theKerberos Constrained Delegationsection, select theEnable Kerberos Constrained Delegationcheckbox.
- Restart theGood Technology Common Servicesservice.
- On the computer hosting theBEMS-Docsservice, grant theAct as part of the operating systemprivilege to theBEMSserver account (for example, GoodAdmin).
- Run theLocal Security Policyadministrative tool.
- In the left pane, expandLocal Policies.
- ClickUser Rights Agreement.
- Configure the service account for theAct as part of the operating systempermission.