The security audit log of shows login type =8 clear text for username and password.  I am completely lost, how this can happen if IIS is set for enabled Windows Authentication with Negotiate as provider (and also Anonymous disabled).



In my case the site we are accessing is something like: https://scom.companyname.com with internal SSL cert.


All we need is single sign on (hopefully this is possible) if user logs in through IE, and not a clear text password.

