Share via


Group Policy SharePoint 2013 Logon Settings[en-US]

Introduction

Hello Dear Readers,
SharePoint 2013 is most popular intranet portal solutions for the public institutions and large companies. We as a system administrators, our one jobs is installing and managing SharePoint infrastructure for the best performance and without minimized problem. Before the install SharePoint, we should the read and apply the following guides :

Microsoft SharePoint Hardware and Software Requirements
http://technet.microsoft.com/en-us/library/cc262485(v=office.15).aspx  

SharePoint Development Process and Logon Problem

After the publishing SharePoint, we can positive or negative feedbacks from the clients in the first times. We want the share informations about how to resolves SP 2010/2013 logon problems immediately after installation with Group Policy Objects.

Create Policy and Design

For starter, we craete a new GPO policy seperated from Default Domain Policy in the GPMC. And right click to GP for the editing.

  • User Configuration - Administrative Templates - Windows Components - Internet Explorer - Internet Control Panel - Security Page - Site to Zone Assignment List

http://www.alperyazgan.com/wp-content/uploads/gposp/1.JPG

This section provides the client will trust to SharePoint portal with http and https both protocols.

  • User Configuration - Administrative Templates - Windows Components - Internet Explorer - Internet Control Panel - Security Page - Trusted Sites Zone - Logon Options

http://www.alperyazgan.com/wp-content/uploads/gposp/2.JPG

This policy also, SharePoint will accept the all client's request from the computer with the logged in user's computer object. For example, if we logged in with "alper" , SharePoint will accept us as an "alper" user and it won't ask username and password anytime.

http://www.alperyazgan.com/wp-content/uploads/gposp/2.JPG

  • DisableLoopbackCheck

We should the add registry path to all clients with GPO. 

Registry Path : HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa
Computer Configuration - Preferences - Windows Settings - Registry , right click and select "New Registry Item".

http://www.alperyazgan.com/wp-content/uploads/gposp/3.jpg

Final

We should the GPUPDATE /FORCE command on the servers and also should the restart all clients computers. SharePoint accepted us without asking username and password each time. 

Best Regards,