canonical / canonical/authd

Feature: Entra Cloud Kerberos Trust (Cloud TGT)

Open
#1,283 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
Go
Stars
308
Forks
41
Avg merge
2d 4h
Merged PRs (30d)
58

Description

### Is there an existing request for this feature?

- [x] I have searched the existing issues and found none that matched mine

### Describe the feature

Can authd make use of Entra ID Cloud Kerberos Trust for authentication with AD connected resources?

This is available with Windows Hello for Business and macOS platformSSO.

MacOS guide: https://learn.microsoft.com/en-us/entra/identity/devices/device-join-macos-platform-single-sign-on-kerberos-configuration

### Describe the ideal solution

_No response_

### Alternatives and current workarounds

_No response_

Contributor guide

Open the contributing guide

Research direction

Start by reading the authd authentication entry points and the linked Microsoft guide for macOS Platform SSO Kerberos configuration. Define the required Cloud Kerberos Trust behavior for Entra ID and AD-connected resources, then confirm the implementation and validation scope with maintainers.

Written by the indexing model from the issue text.

Assessment

Tech stack
go
Domain
authentication, cloud
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
30/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.