M
MadDHatteR
I'm learning the workings of kerby in the logon process...
If there is no GC available to validate pre-authentication data (sent in the
client's KRB_AS_REQ), will a DC that's up validate the information against
AD itself? If not, how does a workstation accept domain logins when the GC
is unavailable?
I'm fairly sure there is some failover mechanism because users can still log
in when our GC goes down (not using cached credentials).
\\ MadDHatteR
If there is no GC available to validate pre-authentication data (sent in the
client's KRB_AS_REQ), will a DC that's up validate the information against
AD itself? If not, how does a workstation accept domain logins when the GC
is unavailable?
I'm fairly sure there is some failover mechanism because users can still log
in when our GC goes down (not using cached credentials).
\\ MadDHatteR