Is there a way to eliminate the need for SSL-VPN users authenticating via AD to enter the Domain field before the username ?

cancel
Showing results for 
Search instead for 
Did you mean: 

Is there a way to eliminate the need for SSL-VPN users authenticating via AD to enter the Domain field before the username ?

Not applicable

I am using a PA-2050 and OS 4.0.5 (plans to upgrade shortly to 4.0.8)  with NetConnect.  We recently started using AD for authentication and it's working very well with one exception:  the users must enter the AD domain name in with their username.  Ex:   domain\username

Is there a way to remove the need to enter the domain name if you are only using one flat AD domain?

3 REPLIES 3

L1 Bithead

Are you using Kerberos or LDAP Authentication?

For VPN Authentication, I typically use Kerberos where you can configure the Realm and Domain, enabling the user to only need to input their username.

We are using LDAP with an authenication profile.   And in addition will be adding another domain to the network soon, thus complicating the situation.

in the ldap server profile under device --> server profiles --> ldap did you enter in the domain in the domain field?

example if your domain is abc.com. users are currently logging in via abc\user. you will need to enter abc in the domain field.

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!