 
            On Tue May 13 18:57:09 2025 +0000, Dmitry Timoshkov wrote:
Probably integrity and confidentiality should be added as well, not sure why they are not part of default SSPI flags.
On the other hand if integrity or confidentiality are not reported as used after a successful creation of the context I'm not sure how such an NTLM context could be considered as a secure/valid one.