Hi Neil,
I havn't impemented SPNEGO but I have used SAML on some implementations. SPNEGO is tied to the Domain and this is likely the casuse of your issue.
Here is a reccomendation from IBM which will be really simple sa it does not require any structureal chage, rather an alternate authenticaiton path that can be implemented from the device. Hopefully you have Mobile device management or some other way of controlling the link to simplify access for users for mobile access?
in short the following URL shoudl allow you to bypass the SPNEGO authenticaiton from mobile
http://<hostname>/maximo/webclient/login/login.jsp?appservauth=trueThis have come directly from the IBM documentaiton and I dont have an environment to verify it for you. Reference included below.
ibm.com/support/pages/spnego-authentication-not-supported-during-mobile-login
It may be worth consiudering SAML or similar for a full SSO expreience as this will work across devices.
------------------------------
Michael Kasteel
Director
ISW
0402830412
------------------------------