From 3d0512efd8af88d0244685aef93a12b121755834 Mon Sep 17 00:00:00 2001 From: Hisanobu Okuda Date: Thu, 16 Nov 2017 17:03:08 +0900 Subject: [PATCH] KEYCLOAK-3842 SPNEGO: Support for multiple kerberos realms --- .../keycloak/federation/kerberos/impl/SPNEGOAuthenticator.java | 3 --- 1 file changed, 3 deletions(-) diff --git a/federation/kerberos/src/main/java/org/keycloak/federation/kerberos/impl/SPNEGOAuthenticator.java b/federation/kerberos/src/main/java/org/keycloak/federation/kerberos/impl/SPNEGOAuthenticator.java index 51bf027689..8fe53209f5 100644 --- a/federation/kerberos/src/main/java/org/keycloak/federation/kerberos/impl/SPNEGOAuthenticator.java +++ b/federation/kerberos/src/main/java/org/keycloak/federation/kerberos/impl/SPNEGOAuthenticator.java @@ -115,9 +115,6 @@ public class SPNEGOAuthenticator { public String getAuthenticatedUsername() { String[] tokens = authenticatedKerberosPrincipal.split("@"); String username = tokens[0]; - if (!tokens[1].equalsIgnoreCase(kerberosConfig.getKerberosRealm())) { - throw new IllegalStateException("Invalid kerberos realm. Realm from the ticket: " + tokens[1] + ", configured realm: " + kerberosConfig.getKerberosRealm()); - } return username; }