Notes Single Logon on Windows 2008 Terminal Server

Hi!

I have installed Lotus Notes 8.5.1 Basic on Windows 2008 Terminal Server and chosed mulituser installation+Notes Signle Logon. I read about mulituser installation and changed settings in registry. Now, multiuser installation works and also when win password and notes password are the same, notes single logon works but there is a warning in some situations.

When first user with equal passwords enter Notes then everything is ok and there is no password prompt. The first user has Notes opened. Then second user with equal passwords enter Notes and there is also no password prompt. But when first user close Notes and reopen it in the same session, there is a message “Your Windows password could not be retieved by Notes Single Logon: Access is denied” and the first user has to manually enter Notes password. The second user is never prompted to enter password when reopen Notes in that session. After first user logoff from the terminal (using Remote Desktop) then user can enter Notes again without entering Notes password. The same situation happens with third user, where previous two users have to enter Notes password when reopen Notes.

I have read that Notes Single Logon is not supported on Terminal Servers but again it works somehow. Since this is test environment I don’t feel like to put it in production since there is this warning message and wondering if there will be some more problems that I can not figure out now. So, could you please tell me what is this message, can it be solved and what do you suggest about installing notes single logon on terminal server?

Any experience, document link or advice would be appreciated!

Thank you in advance.

Best regards,

Sanela

Subject: Not supported and won’t work

You only think it is working because the scenario’s you are trying. The error message you are getting (Access is denied) is because the user is trying to communicate with the Notes Single Logon service user thread of another user. Notes Single Logon service only supports one user at a time. The thread is protected using user based Windows security access control. If another user logs on, the second user will stop working. If user 1 or user 2 logs off of windows and logs back in, all other users logged on will stop working.

Subject: Thanks…

Thank you very much for the response. Your explanation make sense and at first I thought the same, but didn’t have much knowledge about whole processes and wondered if there is some workout for SSO on WTS. So, there is nothing I can do about windows and notes password synchronization on terminal server?

Subject: Notes Single Logon won’t work

There isn’t anything you can do to get it to work.

Going forward, the recommended SSO for the Notes Client is Notes Shared Login. It doesn’t do password synchronization.

http://publib.boulder.ibm.com/infocenter/domhelp/v8r0/index.jsp?topic=/com.ibm.notes85.help.doc/sec_nsl_desc_t.html

Subject: I know…

I know about Notes Shared Login, but it seems it does not suit for my company. We have 5 terminal servers and user does not know on which terminal server would log on. Since user’s notes data directory is the same for every terminal server, user.id that is used for shared login on first terminal server (that user log on) is not valid for the rest, so I should have 5 user.id-s for each server. Is this correct, or there is another solution?

Thank you again for answer and help.

Regards,

Sanela