Sunday, January 27, 2019

Consolidating to a unified 'username' convention in PacketFence w/ Active Directory

I'm very close to having PacketFence running in my lab...very close.

The last step is to figure out how I want users to be presented within the PacketFence UI and what credentials they will use to login.

By convention, my users understand that their "username" is their "email address" (which is really their UPN behind-the-scenes). This alone is pretty trivial to implement.

However, when users login by re-using their Windows credentials (which is part of the typical login flow from machine authentication to user authentication when using a deployed WPA2 WiFi GPO), the username presented to PacketFence is the pre-Windows 2000 format: Realm\Username.

How can I catch these pre-Windows 2000 formatted usernames and re-write them so they match UPN-based usernames within PacketFence?



No comments:

Post a Comment