On Thu May 15 07:44:45 2025 +0000, Hans Leidekker wrote:
We shouldn't trade Kerberos for NTLM. Kerberos is only available if the client is part of the server REALM. If that's not the case then a fallback to NTLM should happen. It still works like that on Windows.
I didn't ask about trading Kerberos for NTLM (it still would be helpful to know whether it worked before). The question was about priorities and using existing gssapi plugin as a reference.