[cifs-protocol] [REG: 114120912145254] What is UF_TRUSTED_TO_AUTHENTICATE_FOR_DELEGATION / TrustedToAuthenticationForDelegation used for?

Tarun Chopra Tarun.Chopra at microsoft.com
Tue Dec 9 15:39:48 MST 2014


Hello Andrew - 

Thanks for the contacting Microsoft support and feedback. A support engineer will be in touch to assist further.

Thanks
Tarun.

-----Original Message-----
From: Andrew Bartlett [mailto:abartlet at samba.org] 
Sent: Tuesday, December 9, 2014 2:30 PM
To: Interoperability Documentation Help
Cc: cifs-protocol at samba.org
Subject: What is UF_TRUSTED_TO_AUTHENTICATE_FOR_DELEGATION / TrustedToAuthenticationForDelegation used for?

MS-SAMR 2.2.1.12 states:

USER_TRUSTED_TO_AUTHENTICATE_FOR_DELEGATION This bit is used by the Kerberos protocol, as specified in [MS-KILE] section 3.3.1.1.

However, MS-KILE 3.3.1.1 is no more illuminating, doesn't use the flag full name (please, please remove all references to two-letter codes) and uses another name not specified anywhere else (TrustedToAuthenticationForDelegation).

Please improve the inter-doc references and let me know what is this flag is used for.  (We understand from elsewhere it is related to the S4U2Proxy functionality).

Thanks,

Andrew Bartlett
--
Andrew Bartlett
http://samba.org/~abartlet/
Authentication Developer, Samba Team  http://samba.org
Samba Developer, Catalyst IT          http://catalyst.net.nz/services/samba






More information about the cifs-protocol mailing list