[Samba] Windows11 24H2 and Event 1097...
Sami Hulkko
sahulkko at gmail.com
Wed Apr 23 05:12:22 UTC 2025
Hi,
On Windows 11 client you can install and use RSAT tools. The 'Active
Directory User and Computers' RSAT tool makes it possible to change
accepted Kerberos types per user on users properties on Account tab in
scrollable Account options list. Note that some features need activation
of 'Advanced Features' on 'View' menu.
I have no intel how to setup in Group Policy Object you can have Domain
wide implemented.
SH
On 22/04/2025 20.31, Marco Gaiarin via samba wrote:
> Mandi! Sami Hulkko via samba
> In chel di` si favelave...
>
>> One thing you can try on Windows 11 machines is to leave domain and
>> rejoin. Note that in some cases some user account duplication can
>> happen. Or at least has happened to me in 4.10 branch.
> Mmmhhhh... effectively i've 3 PCs on 24H2: two have system GPO that never
> worked; one was at 22H2 and worked flawlessy, but when upgrade to 24H2 stop
> working.
>
> Seems to me some sort of 'protocol level' glitch, the link:
>
>>> Googling deeper lead me to:
>>> https://learn.microsoft.com/en-us/troubleshoot/windows-server/networking/target-account-name-incorrect-error-access-file-share
> Seems to me pertinent, but probably:
>
>>> so i've set SupportedEncryptionTypes key to '0x7FFFFFFF', but nothing changed.
> is a 'server part' registry keys, not a client part; so, how can i relax
> kerberos compatibility on client part?
>
>
> Thanks.
>
--
Sami Hulkko
+358 45 8569 319
sahulkko at gmail.com
sahulkko at icloud.com
More information about the samba
mailing list