use-domain-qualified-name

Use the use-domain-qualified-name stanza entry to control whether Security Verify Access includes the domain from the Kerberos user principal name as part of the ISAM user ID.

use-domain-qualified-name = {yes|no}

Description

Kerberos authentication provides a principal name of the form shortname@domain.com. By default, ISAM uses only the short name as the ISAM user ID. If this parameter is set to yes, then Security Verify Access includes the domain as part of the ISAM user ID. The use-domain-qualified-name stanza entry has no effect if multiple-domain Active Directory is used as the ISAM user registry. In this case, the domain name is always included as part of the ISAM user name.

Options

Usage: Required.

Default value no

Example:

use-domain-qualified-name = yes

Parent topic: [spnego] stanza