Search Mailing List Archives


Limit search to: Subject & Body Subject Author
Sort by: Reverse Sort
Limit to: All This Week Last Week This Month Last Month
Select Date Range     through    

REMOTE_USER and map_username

YANG ChengFu youngseph at gmail.com
Mon Oct 15 11:12:05 PDT 2012


Hello Russ,

I have tried UPN, it works the following option

kinit -E firstname.lastname at example.com

you see "-E     treats the principal name as an enterprise name."

How can I do the same thing in webauth ?

Thanks !
--
Yang




On Fri, Oct 12, 2012 at 9:18 PM, Russ Allbery
<eagle at windlord.stanford.edu>wrote:

> YANG ChengFu <youngseph at gmail.com> writes:
>
> > thanks for your information,our Kerberos REALM is EXAMPLE.ORG, but
> > userPrincipalName is firstname.lastname at example.com , it is possible to
> > use userPrincipalName as authentication Identity?
>
> I don't know -- it depends on the behavior of your KDC.  If Active
> Directory allows you to kinit with that as the principal name, then yes.
> I *think* you can kinit as UPN, but I'm not positive; most of my personal
> familiarity is with UNIX KDCs.
>
> --
> Russ Allbery <eagle at windlord.stanford.edu>
> Technical Lead, ITS Infrastructure Delivery Group, Stanford University
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.stanford.edu/pipermail/webauth-info/attachments/20121015/28aab1e5/attachment.html>


More information about the webauth-info mailing list