https://bz.apache.org/bugzilla/show_bug.cgi?id=61977
--- Comment #12 from Mark Thomas <ma...@apache.org> --- Having to remove the domain components when using a SRV record appears to be a side effect of how the Java LDAP provider operates. I can't recreate the problem with multiple JNDIRealms. Authentication happens correctly for me with the domains in either order. I'd recommend using remote debugging to step through the code to see what is going on. If you can post you configuration here, someone might be able to spot something but, generally, debugging is more fruitful. I'll ping our friendly Oracle contact to see if there is any scope to change the behaviour of the Java 8 fix. See the dev list. -- You are receiving this mail because: You are the assignee for the bug. --------------------------------------------------------------------- To unsubscribe, e-mail: dev-unsubscr...@tomcat.apache.org For additional commands, e-mail: dev-h...@tomcat.apache.org