GSSAPI FIPS compliant AES encryption

Griff James 1 Reputation point
2022-12-14T10:23:44.677+00:00

Are there any plans in the pipeline to update MSFT's GSSAPI implementation to add support for AES-256 encryption?

I know that no RFC currently exists for this, the strongest session key supported by the RFCs is 3DES which is deprecated.

On a related note the NTLMv2, SMB and NETLOGON protocols are also lagging behind with only AES-128 being supported. Any plans to update these as well?

thx

Windows development Windows Open Specifications
Windows for business Windows Server Devices and deployment Configure application groups
{count} votes

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.