Hide Forgot
This bug is created as a clone of upstream ticket: https://fedorahosted.org/sssd/ticket/700 We should default to using a keytab entry with the domain's Kerberos realm, but it should be possible to configure it to use a specific principal (possibly of another, trusted realm) for validation and setup of a FAST tunnel.
duplicate ... https://bugzilla.redhat.com/show_bug.cgi?id=766913
*** This bug has been marked as a duplicate of bug 766913 ***