Canonicalize Principal FQDN

This option specifies whether the Kerberos layer canonicalizes the host FQDN in the server’s service principal name.

  • Enabled (1): The Kerberos layer canonicalizes the host FQDN in the server’s service principal name.
  • Disabled (0): The Kerberos layer does not canonicalize the host FQDN in the server’s service principal name.

Note: This option only affects MIT Kerberos, and is ignored when using Active Directory Kerberos. It can only be disabled if the Kerberos Realm or KrbRealm key is specified.

Key Name Default Value Required

ServicePrincipal
Canonicalization

Selected (1)

No