I'm running Spotfire version 7.8 with Kerberos-based authentication. All is working fine on Windows clients, SSO to the Spotfire server works and also delegation to the node manager is working when dxp files are opened on the web player.
I have set up Kerberos also for iPad as described here. With this SSO to the Spotfire server is working. However the delegation to the node manager fails and no dxp files can be opened on the web player.
I captured the traffic with wireshark. I think the issue is that the TGS request is sent with the kdc-option "request-anonymous" (besides the option "forwardable"), so that the response is KRB5KDC_ERR_BADOPTION NT Status: STATUS_NOT_SUPPORTED. When doing the same on a Windows client only the option "forwardable" is sent.
Any idea what might be missing here?
Thanks a lot for any hint