Microsoft introduced an enhancement to its Kerberos implementation for Windows Server 2012 that was later called KDC Resource SID Compression, in which the KDC automatically compresses the group secur...Microsoft introduced an enhancement to its Kerberos implementation for Windows Server 2012 that was later called KDC Resource SID Compression, in which the KDC automatically compresses the group security identifiers (SIDs) in the resource domain. To compress resource SIDs, the KDC stores the SID of the resource domain of which the target resource is a member. The KDC inserts only the RID portion of each resource SID into the ResourceGroupIds portion of the authentication data.