The Microsoft publication is great. But after I set SPN for the service account, I went to AD (based on page 6, Figure 2), the registered SPN entry is not there. There is no way to grant delegation.
Anybody has any experiences on this?
We had to use designated slq login on linkserver as workaround. (that does not meet single sign on principle)
by the way, after SPN registering, the entry will only show up under SETSPN -L domain\serviceaccountuser
not under SETSPN -L hostname
Is that normal?
Jason
http://dbace.us
😛