FIX: Unexpected authentication prompts while you use an OWA website that is published by using Forefront Threat Management Gateway (TMG) 2010 when RSA authentication and FBA are used

Article translations Article translations
Article ID: 2783345 - View products that this article applies to.
Expand all | Collapse all

Symptoms

Consider the following scenario:
  • You publish an Outlook Web Access (OWA) website by using Microsoft Forefront Threat Management Gateway (TMG) 2010.
  • The website uses RSA authentication.
  • You authenticate a client connection by using OWA Forms Based Authentication (FBA).
  • You enable an idle time-out setting for Public Computers and set a specific time.
  • You enable the No delegation, and client cannot authenticate directly setting or the No delegation, but client may authenticate directly delegation setting.
  • You connect to the OWA website from a public computer and wait some time before you continue to use the website.

In this scenario, you may be prompted for your credentials unexpectedly while you use the OWA website. This authentication prompt may occur periodically.

Cause

This issue occurs because the idle time-out setting for public computers is handled incorrectly as a session time-out.

When a public computer connects to the OWA website, you are prompted for credentials. However, the session times out after the time that is specified in the idle time-out setting. Therefore, authentication is required again while the connection remains active.

Resolution

To resolve this problem, install the hotfix package that is described in the following Microsoft Knowledge Base article:
2735208 Rollup 3 for Forefront Threat Management Gateway (TMG) 2010 Service Pack 2

Status

Microsoft has confirmed that this is a problem in the Microsoft products that are listed in the "Applies to" section.

References

For more information about software update terminology, click the following article number to view the article in the Microsoft Knowledge Base:
824684 Description of the standard terminology that is used to describe Microsoft software updates

Properties

Article ID: 2783345 - Last Review: January 10, 2013 - Revision: 1.0
Applies to
  • Microsoft Forefront Threat Management Gateway 2010 Service Pack 2, when used with:
    • Microsoft Forefront Threat Management Gateway 2010 Enterprise
    • Microsoft Forefront Threat Management Gateway 2010 Standard
Keywords: 
kbqfe kbfix kbexpertiseinter kbbug kbsurveynew KB2783345

Give Feedback

 

Contact us for more help

Contact us for more help
Connect with Answer Desk for expert help.
Get more support from smallbusiness.support.microsoft.com