> Source: [sk106202](https://support.checkpoint.com/results/sk/sk106202)

# sk106202 - Captive Portal SSO does not work as configured

| Property | Value |
|----------|-------|
| Solution ID | sk106202 |
| Date Created | 2015-06-02 |
| Last Modified | 2016-09-03 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |

## Symptoms

- * Users are redirected to Captive Portal when browsing to a page. If Access Roles are used, users from specific Access Roles that should get SSO, are re-directed to Captive Portal.  

* Traffic capture shows: `error-code: eRR-ETYPE-NOSUPP (14)`

## Cause

Kerberos SSO was configured with a different user on AU's that are connected to same domain. When such policy is installed on a gateway, Kerberos server side keys are generated.   
Since SSO is configured with different users, two different keys are created for the SAME Kerberos service, one for each LDAP AU.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
