STDOUT: >>> KrbApReq: authenticate succeed.
"Unable to extract kerberos authorization data from the kerberos ticket: Malformed PAC logon info."
To enable kerberos debug, refer to,
Enable Kerberos debug on CA APIM layer7 gateway
To change log level, refer to product document, (change both log.level cluster-wide property, and the threshold of the ssg log sink)
Gateway Logging Levels and Thresholds
Release : All supported gateway versions
Component : Integration with APM
Turn off kerberos compression on KDC, the solution is on MS website: Resource SID Compression in Windows Server 2012 may cause Authorization problems on devices that don't support Resource SID compression