[Samba] Windows11 24H2 and Event 1097...
Marco Gaiarin
gaio at lilliput.linux.it
Sat Apr 26 08:07:44 UTC 2025
Mandi! Sami Hulkko via samba
In chel di` si favelave...
> On Windows 11 client you can install and use RSAT tools. The 'Active
> Directory User and Computers' RSAT tool makes it possible to change
> accepted Kerberos types per user on users properties on Account tab in
> scrollable Account options list. Note that some features need activation
> of 'Advanced Features' on 'View' menu.
...do you mean tackling with 'msDS-SupportedEncryptionTypes' as per:
https://techcommunity.microsoft.com/blog/coreinfrastructureandsecurityblog/decrypting-the-selection-of-supported-kerberos-encryption-types/1628797
?
I suppose for the machine account object, right?
This seems strange to me, because win 10 and win11 22H2 works as expected,
so seems me more a 'client OS' things that a machine account thing, but...
--
More information about the samba
mailing list