Canonicalize Principal FQDN

ServicePrincipalCanonicalization

This option specifies whether the Kerberos layer canonicalizes the host FQDN in the server’s service principal name.

  • Enabled (1)1: The Kerberos layer canonicalizes the host FQDN in the server’s service principal name.
  • Disabled (0)0: The Kerberos layer does not canonicalize the host FQDN in the server’s service principal name.

Note:

  • This option only affects MIT Kerberos, and is ignored when using Active Directory Kerberos.
  • This option can only be disabled if the Kerberos Realm KrbRealm key is specified.

Key Name Default Value Required

ServicePrincipal
Canonicalization

Selected (1)

No