Cadet 1st Class Cadet 1st Class
Cadet 1st Class
516 views

RUM User Name Detection...

Hi Experts, our organization uses RUM 9.25 to monitor an application where we require the ability to do user name detection.  The user name is not exposed in plain text at all in the URL, HTTP header, cookies, or content of the HTML page, however, the application is using Kerberos for authentication.  Is it at all possible for HP RUM to decrypt a Kerberos token to retrieve the username?

 

I know RUM can decrypt SSL traffic, so I was wondering if it offers similar functionalities that if we provide it with the secret key to decrypt the token and given RUM server is also deployed within the same domain (establish some level trust with AD), that if it would be able to do so?

 

Any information on this topic is appreciated.

 

Thanks!

0 Likes
1 Reply
Micro Focus Expert
Micro Focus Expert

Hi Dave,

 

I looked around regarding this issue, it seems that RUM - as of today - only can decode SSL trafficx, but not Kerberos.

 

You might wanna open a case with support to open an Enhancement Request for this.

 

Greetings

Siggi

Customer Support
Micro Focus

If you find that this or any post resolves your issue, please be sure to mark it as an accepted solution.
0 Likes
The opinions expressed above are the personal opinions of the authors, not of Micro Focus. By using this site, you accept the Terms of Use and Rules of Participation. Certain versions of content ("Material") accessible here may contain branding from Hewlett-Packard Company (now HP Inc.) and Hewlett Packard Enterprise Company. As of September 1, 2017, the Material is now offered by Micro Focus, a separately owned and operated company. Any reference to the HP and Hewlett Packard Enterprise/HPE marks is historical in nature, and the HP and Hewlett Packard Enterprise/HPE marks are the property of their respective owners.