Canonicalize Principal FQDN

ServicePrincipalCanonicalization

Key Name Default Value Required

ServicePrincipal
Canonicalization

Selected (1)

No

Description

This option specifies whether the Kerberos layer canonicalizes the host FQDN in the server’s service principal name.

  • Enabled (1)1: The Kerberos layer canonicalizes the host FQDN in the server’s service principal name.
  • Disabled (0)0: The Kerberos layer does not canonicalize the host FQDN in the server’s service principal name.

Note:

  • This option only affects MIT Kerberos, and is ignored when using Active Directory Kerberos.
  • This option can only be disabled if the Kerberos Realm KrbRealm key is specified.