Several Auth Mechanisms and Attribute Release

Rod Widdowson rdw at steadingsoftware.com
Mon Aug 19 08:51:15 EDT 2013


> I have a test setup with Shibboleth and have implemented login through
username/password against AD and also Kerberos against the same AD.

When you say “Username/Password” do you mean "LDAP via JAAS"? If so, have
you considered implementing is via KRB5 and JAAS?  That way you might/should
get the correct principal.  I have not tried this for quite some time so
things may be different, but I am sure that a one stage (which may have been
1.3) KRB/JAAS gave you a "qualified with the domain" principal...

/Rod



More information about the users mailing list