You normally see this option under Resource Policies > Web > Kerberos/NTLM/Basic Auth. If you donot find it here, the chances are that it is already deleted.
You could look through a dsrecord to check what creds the SA is presenting to the Domino server and what the response is for this from the Domino server.