How will Microsoft updates KB5020805 and KB5021130 affect AD-based authentication on my machines?
Issue
On June 13th, 2023, the security fixes within Microsoft updates KB5020805 and KB5021130 became mandatory for Windows Server deployments. These updates change how Kerberos interacts with Privilege Attribute Certificate (PAC) signatures (KB5020805) and also address weaknesses in the Netlogon protocol when RPC signing is used instead of RPC sealing (KB5021130).
Environment
- Red Hat Enterprise Linux (RHEL) 6, 7, 8 and 9
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.