Why is NTLM Authentication used instead of Kerberos for clients in different domain?
Applies to
- ONTAP 9
- CIFS
Answer
- The authentication method is chosen by the client when initiating access.
- When the client and the CIFS server belong to different domains, the client cannot obtain a Kerberos ticket.
- Therefore, using NTLM authentication in this scenario is expected behavior.
