A customer has a webserver. They currently authenticate through it not
using NAM, but with Kerberos. So, people not logged into the domain, is
prompted for a login popup (see screenshot below).


I have done a bit of research and this is called a NTLM login box. I've
found this guide about extending Kerberos authentication with NTLM, but
that is not what I want, I think: http://tinyurl.com/oytoaaf

I've read multiple places that NAM does not support NTLM, so maybe I'm
out of luck? I did a basic Identity Injection policy, so that after a
secure name/password auth against NAM, it sends the credentials to the
webserver. This does not work through, and I am not sure if it should?

Any ideas?

