Is it possible to use the Windows 2003 user names instead of pre-Windows 2000 user names in Windows

Is it possible to use the Windows 2003 user names instead of pre-Windows 2000 user names in Windows

am 05.09.2006 15:27:58 von Maurice

Hello,
I am trying to get username information by using
User.Identity.Name.ToString, if i logged in with username to given
network place, it is ok! It returns SERVERNAME/username.
Otherwise if I logged in with "name.surname@SERVERNAME.com" it again
returns SERVERNAME/username although i want it to return
"name.surname".
I changed the IIS server settings, checked digest authentication and
tried the other things, too. But makes no difference.
It is said to originated from Kerberos Authentication...
If anyone can help me I will be appreciated.
Thanks for now,
MK

Re: Is it possible to use the Windows 2003 user names instead of pre-Windows 2000 user names in Wind

am 05.09.2006 22:22:03 von Brian

IIS must be making the translation internally from the UPN to the
sAMAccountName. It's not hard to get the UPN given the WindowsIdentity
object that you have at hand, and relying on the UPN for the user's true
name is bad programming practice IMHO.

My recommendation is to search AD for that user's object in the directory
and retrieve the first and last name properties or whatever else you need in
your code.

--
Thanks,
Brian Desmond
Windows Server MVP - Directory Services

www.briandesmond.com


"MaURiCe" wrote in message
news:1157462878.505088.151490@m73g2000cwd.googlegroups.com.. .
> Hello,
> I am trying to get username information by using
> User.Identity.Name.ToString, if i logged in with username to given
> network place, it is ok! It returns SERVERNAME/username.
> Otherwise if I logged in with "name.surname@SERVERNAME.com" it again
> returns SERVERNAME/username although i want it to return
> "name.surname".
> I changed the IIS server settings, checked digest authentication and
> tried the other things, too. But makes no difference.
> It is said to originated from Kerberos Authentication...
> If anyone can help me I will be appreciated.
> Thanks for now,
> MK
>

Re: Is it possible to use the Windows 2003 user names instead of pre-Windows 2000 user names in Wind

am 06.09.2006 13:38:18 von Maurice

Thank you for your answer but is there any other option that we can
solve it by changing the settings of IIS...
Moris

Brian Desmond [MVP] wrote:
> IIS must be making the translation internally from the UPN to the
> sAMAccountName. It's not hard to get the UPN given the WindowsIdentity
> object that you have at hand, and relying on the UPN for the user's true
> name is bad programming practice IMHO.
>
> My recommendation is to search AD for that user's object in the directory
> and retrieve the first and last name properties or whatever else you need in
> your code.
>
> --
> Thanks,
> Brian Desmond
> Windows Server MVP - Directory Services
>
> www.briandesmond.com
>
>
> "MaURiCe" wrote in message
> news:1157462878.505088.151490@m73g2000cwd.googlegroups.com.. .
> > Hello,
> > I am trying to get username information by using
> > User.Identity.Name.ToString, if i logged in with username to given
> > network place, it is ok! It returns SERVERNAME/username.
> > Otherwise if I logged in with "name.surname@SERVERNAME.com" it again
> > returns SERVERNAME/username although i want it to return
> > "name.surname".
> > I changed the IIS server settings, checked digest authentication and
> > tried the other things, too. But makes no difference.
> > It is said to originated from Kerberos Authentication...
> > If anyone can help me I will be appreciated.
> > Thanks for now,
> > MK
> >

Re: Is it possible to use the Windows 2003 user names instead of pre-Windows 2000 user names in Wind

am 06.09.2006 16:22:17 von Roger Abell

When you stated
> It is said to originated from Kerberos Authentication...
you are indicating strong evidence from the security event
logs showing that the login was negotiated to and did then
successfully use Kerberos, not NTLM ??


"MaURiCe" wrote in message
news:1157462878.505088.151490@m73g2000cwd.googlegroups.com.. .
> Hello,
> I am trying to get username information by using
> User.Identity.Name.ToString, if i logged in with username to given
> network place, it is ok! It returns SERVERNAME/username.
> Otherwise if I logged in with "name.surname@SERVERNAME.com" it again
> returns SERVERNAME/username although i want it to return
> "name.surname".
> I changed the IIS server settings, checked digest authentication and
> tried the other things, too. But makes no difference.
> It is said to originated from Kerberos Authentication...
> If anyone can help me I will be appreciated.
> Thanks for now,
> MK
>