This is about AD, Windows 7 64 bit, Kerberos and ZCM 10.3.1.

I have a situation where the UPN (userPrincipalName) and SAM
(sAMAccountName) are different in AD.

That is, the part before the "@" in the UPN does not match the SAM

They log in with the UPN name in AD and I have Kerberos activated in
ZCM, but the ZCM agent cant login. If the UPN and SAM match, then it
They log in to AD fine with both the UPN and SAM.

I have tried changing the LDAP mapping in conf/authentication, but it
makes no difference.

Is it at all possible to have a seamless login in this scenario?