Hello Brian,
thanks for your answer.
In our case UPN and sAMAccountName have nothing in common, e.g.:
samAccountName = ABC123
UPN =
[email protected]
If we follow your suggestion the NAC will check "max" against the samAccountName. This will not result in a match.
And yes we have configured a pattern *@example.de to redirect the user authentication against the LDAP server.
Kind regrads
Christoph