Is there a way to eliminate the need for SSL-VPN users authenticating via AD to enter the Domain field before the username ?

Announcements

ATTENTION Customers, All Partners and Employees: The Customer Support Portal (CSP) will be undergoing maintenance and unavailable on Saturday, November 7, 2020, from 11 am to 11 pm PST. Please read our blog for more information.

Reply
Highlighted
Not applicable

Is there a way to eliminate the need for SSL-VPN users authenticating via AD to enter the Domain field before the username ?

I am using a PA-2050 and OS 4.0.5 (plans to upgrade shortly to 4.0.8)  with NetConnect.  We recently started using AD for authentication and it's working very well with one exception:  the users must enter the AD domain name in with their username.  Ex:   domain\username

Is there a way to remove the need to enter the domain name if you are only using one flat AD domain?

Tags (2)
Highlighted
L1 Bithead

Are you using Kerberos or LDAP Authentication?

For VPN Authentication, I typically use Kerberos where you can configure the Realm and Domain, enabling the user to only need to input their username.

Highlighted
Not applicable

We are using LDAP with an authenication profile.   And in addition will be adding another domain to the network soon, thus complicating the situation.

Highlighted
L3 Networker

in the ldap server profile under device --> server profiles --> ldap did you enter in the domain in the domain field?

example if your domain is abc.com. users are currently logging in via abc\user. you will need to enter abc in the domain field.

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the Live Community as a whole!

The Live Community thanks you for your participation!