> Source: [sk87200](https://support.checkpoint.com/results/sk/sk87200)

# sk87200 - Terminal Server Agent reports a different user domain attribute in the logs for the same user and same domain

| Property | Value |
|----------|-------|
| Solution ID | sk87200 |
| Date Created | 2012-11-05 |
| Last Modified | 2021-10-30 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |
| OS | Windows |

## Symptoms

- * The Terminal Server Agent reports a different user domain attribute in the logs for the same user and same domain.

* The standard Identity Agent reports the same user domain attribute in the logs for the same user and same domain.

## Cause

The issue is only relevant to Active Directory environments that use alternative UPN (User Principal Name).

For users that log in with an alternative UPN, the Terminal Server Agent uses the alternative UPN as the domain name (instead of FQDN).

The standard Identity Agent always uses the domain name (FQDN).

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
