最新消息:雨落星辰是一个专注网站SEO优化、网站SEO诊断、搜索引擎研究、网络营销推广、网站策划运营及站长类的自媒体原创博客

WSO2 IWA Kerberos Authentication Fails to Retrieve Mobile Claim for SMS OTP - Stack Overflow

programmeradmin2浏览0评论

Description: I am using WSO2 Identity Server with Integrated Windows Authentication (IWA) and Kerberos for authentication. I have configured SMS OTP as a second authentication step.

Problem: When using Basic Authentication, SMS OTP works fine, and the user receives an OTP. When using IWA (Kerberos Authentication), the user gets authenticated, but fails with "User not found in the directory" when fetching claims for SMS OTP. The mobile claim is not being retrieved from the user store, causing the SMS OTP step to fail. WSO2 Environment: WSO2 Identity Server version: [Specify your version] User store: Active Directory (AD) via LDAP Multi-attribute login enabled: Yes (sAMAccountName, mail, etc.) Authenticator configuration: IWA (Kerberos) + SMS OTP

What I Have Tried Checked IWA Authentication:

User logs in via IWA successfully. However, the username retrieved may not match AD's search filter. Checked Mobile Claim Retrieval:

sAMAccountName and mail claims are retrieved correctly. Mobile claim () is missing when using IWA.

发布评论

评论列表(0)

  1. 暂无评论