We authenticate against a Windows domain using LDAP (and not using Kerberos).
In KeyCloak 1.2.0, this prompt now appears when users are asked to log in. The problem is that this prompt automatically appends the domain to the username, and I can't see any LDAP property that accepts the domain name.
We might be able to use userPrincipalName, but none of our users have any experience logging in with an email address, and I'd like to avoid the training overhead of this if possible.
So my questions are:
1. Can I disable this prompt and use the standard keycloak form based login?
2. Is there an LDAP field that I can define in the keycloak LDAP federation config that will accept a domain as part of the username?
--
Matthew Casperson
Senior Front End Developer
Technology, Space & Distribution
Auto & General Holdings Pty Ltd
P: 07) 3377 8751 (Direct: 3377 8751)
F: 07) 3377 8833