admin@PA-3060>
test authentication authentication-profile
<authentication-profile-name>
username
<username>
password
You
will be prompted for the password associated with the user account.
Profile
names are case-sensitive. Also, if the authentication profile has
a username modifier defined, you must enter it with the username.
For example, if the username modifier is %USERINPUT%@%USERDOMAIN%,
for a user named bzobrist in domain acme.com, you would need to enter
bzobrist@acme.com
as
the username.
For example, run the following command
to test connectivity with a Kerberos server defined in an authentication
profile named Corp, using the login for the LDAP user credentials
for user bzobrist:
admin@PA-3060>
test authentication authentication-profile Corp username bzobrist password
Enter password :
Target vsys is not specified, user "bzobrist" is assumed to be configured with a
shared auth profile.
Do allow list check before sending out authentication request...
name "bzobrist" is in group "all"
Authentication to KERBEROS server at '10.1.2.10' for user 'bzobrist'
Realm: 'ACME.LOCAL'
Egress: 10.55.0.21
KERBEROS configuration file is created
KERBEROS authcontext is created. Now authenticating ...
Kerberos principal is created
Sending authentication request to KDC...
Authentication succeeded!
Authentication succeeded for user "bzobrist"