Constrained Delegation
Requirements
Explanation
Enumeration
# Get computer Constrained Delegation
Get-DomainComputer -TrustedToAuth| Select DnsHostName,UserAccountControl,msds-allowedtodelegateto | FL
# Get user Constrained Delegation
Get-DomainUser -TrustedToAuth# Search both users and computers for Constrained Delegation
Get-ADObject -Filter {msDS-AllowedToDelegateTo -ne "$null"} -Properties msDS-AllowedToDelegateToObtain TGT


Obtains TGS for service
Pass the Ticket (PtT)


Alternate Service Name

Generate service tickets for all service types
Last updated