[Samba] Windows11 24H2 and Event 1097...

Marco Gaiarin gaio at lilliput.linux.it
Sat Apr 26 08:07:44 UTC 2025


Mandi! Sami Hulkko via samba
  In chel di` si favelave...

> On Windows 11 client you can install and use RSAT tools. The 'Active 
> Directory User and Computers' RSAT tool makes it possible to change 
> accepted Kerberos types per user on users properties on Account tab in 
> scrollable Account options list. Note that some features need activation 
> of 'Advanced Features' on 'View' menu.

...do you mean tackling with 'msDS-SupportedEncryptionTypes' as per:

	https://techcommunity.microsoft.com/blog/coreinfrastructureandsecurityblog/decrypting-the-selection-of-supported-kerberos-encryption-types/1628797

?

I suppose for the machine account object, right?


This seems strange to me, because win 10 and win11 22H2 works as expected,
so seems me more a 'client OS' things that a machine account thing, but...

-- 





More information about the samba mailing list