> Source: [sk115026](https://support.checkpoint.com/results/sk/sk115026)

# sk115026 - If User Principal Name (UPN) used to login, there is no option to remove "@domain" part for SSO

| Property | Value |
|----------|-------|
| Solution ID | sk115026 |
| Date Created | 2016-12-15 |
| Last Modified | 2016-12-20 |
| Technical Level | General |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |
| OS | Gaia |

## Symptoms

- If User Principal Name (UPN) is used to login, there is no option to remove "@domain" part for SSO.

## Cause

**FileShare Example scenario:**

* Changing SSO format for FileShare application in GuiDBedit does not take effect.
* Disabling SSO and manual log in works.
* FileShare app configured to use portal credentials for SSO, in addition ssl_vpn realm is configured to use UPN for LDAP fetch.

The user is part of a shared Mobile Access Gateway that consists of several domains and the login/user fetch type is the User Principal Name (UPN) (**user@admin**).

The user has access to a FileShare application, where the internal file server expects the user to login with a different user format (for example: domain\\user).

By default, the Gateway will inject the username as the user logged in to the Mobile Access portal. As a result, the username on the session is UPN (**name@domain** ), but the FileShare server only expects the "**name**" part.

## Solution

No fix is required; the system is functioning as designed. If User Principal Name is used to login there is no option to remove the "@domain" part for SSO.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
