Canonicalize Principal FQDN

ServicePrincipalCanonicalization

This option specifies whether the Kerberos layer canonicalizes the host FQDN in the server’s service principal name.

  • Enabled (1)1: The Kerberos layer canonicalizes the host FQDN in the server’s service principal name.
  • Disabled (0)0: The Kerberos layer does not canonicalize the host FQDN in the server’s service principal name.

Note:

  • This option only affects MIT Kerberos, and is ignored when using Active Directory Kerberos.
  • This option can only be disabled if the Kerberos Realm KrbRealm key is specified.
  • Key Name Default Value Required

    ServicePrincipal
    Canonicalization

    Selected (1)

    No