What's needed to enable Kerberos SSO in 3.0SP1 running on Windows 2012R2
standalone without IDM Apps? OSP points to AD.

In configupdate.bat, Authentication, Authentication Method = Kerberos
What should the Mapping attribute name be?

In the configutil.bat, Security Settings, Auth Matching Rules, do I need
to add something here?

I've already created the SPN with setspn, the keytab with ktpass, the
krb5.ini and the Kerberos_login.config


