Skip to main content

September 3, 2026

Configuring Kerberos Authentication In Omnissa Access

Kerberos authentication provides users who are successfully signed in to their Active Directory domain access to their apps portal without additional credential prompts. You enable the Kerberos authentication method for secure interactions between users' browsers and the Omnissa Access service.

Kerberos authentication can be configured for Active Directory over LDAP or Active Directory (Integrated Windows Authentication).

This authentication method requires the Omnissa Access connector and its Kerberos Auth service component to be installed. The Kerberos Auth service requires inbound connectivity. For high availability, you can deploy the Kerberos Auth service on multiple connectors behind a load balancer. See Prerequisites for Installing the Omnissa Access Connector.

Setting up Kerberos authentication involves the following tasks:

  • Configure the Kerberos authentication method.
  • Associate the authentication method with the Workspace IDP identity provider, and add it to access policies.
  • Configure users' Web browsers. Firefox, Microsoft Edge, and Chrome all require additional browser-side configuration to send Kerberos credentials to the Omnissa Access service.

If users encounter a Kerberos initialization error after the Kerberos Auth service is installed, see Kerberos Initialization Error in Omnissa Access for the cause and resolution.

Was this page helpful?

Provide feedback for this topic

Was this topic helpful?

Please do not include any personal or confidential information.

Generating link…