Is it possible to use Kerberos constrained delegation through a traffic manager profile? I have two endpoints (as defined in a traffic manager profile) that when I hit directly (via local host A record) the configured HTTP/<name> SPN allows integrated authentication to occur but when I add a CNAME in DNS to the trafficmanager.net address the application says 'unknown' or 'invalid token presented' (don't expect any help on the application, just a question as to whether traffic manager even supports this configuration)?
↧