SSO config First off your Zimbra server and Windows Domain Controller need to be set up for SPNEGO SSO as per the server instructions. If you've got this bit right then SSO should already be working correctly with the Zimbra web client (i.e. you can login without being prompted to supply credentials, and when you logout you are given a simple 'Launch' dialog to reconnect).
Then for ZCO you just need to:
- ensure that the server name in your Outlook profile matches the full name used in the SPNEGO configuration
- disable the StorePassword registry setting (in \Software\Zimbra, HKCU takes precedence over HKLM)
Both of these can be done within the MSI for new profiles using the instructions in the ZCO Admin Guide. |