Windows Authentication fails after upgrading Directory Server

May 5, 2022 | KB: 1014262
Directory Server

Summary

Windows Authentication in Directory Server fails on Microsoft Edge and possibly, other internet browsers when:

  • Upgrading to a newer version of Directory Server
  • Before upgrade, the Directory Server or STS IIS application pool identities were changed to a value other than the default value of NetworkService

Cause

When upgrading to a newer version of Directory Server, any changes made to the IIS application pool identities for Directory Server or STS are overwritten with the default value of NetworkService. This may cause Windows Authentication to fail or behave inconsistently across internet browsers.

Resolution

This issue is no longer relevant when upgrading to Laserfiche Directory Server 11 Update 2 or later. You can specify application pool identities during the installation process.

Workaround

Prior to upgrading Directory Server note the IIS application pool identities. After upgrade is complete, manually change the IIS application pool identities to what they were prior to the upgrade.
Note: Directory Server application pool is named LicenseManagerAppPool. STS application pool is named LicenseManagerSTSAppPool.