Message CenterAdmin impact

MC1279830 — Second deployment phase for Kerberos RC4 hardening begins with the April 2026 Windows security update

MC1279830WindowsstayInformedUpdated: 14 April 2026

Windows updates released April 2026 and later begin the second deployment phase of protections for a Kerberos information disclosure vulnerability (CVE‑2026‑20833). In this phase, domain controllers change default Kerberos ticket behavior for accounts that do not have an explicit Kerberos encryption configuration, shifting to AES‑SHA1-only by default. Environments with remaining RC4 dependencies may experience authentication issues unless those dependencies are remediated or explicitly configure...

Applies to: Windows
Source: mc.merill.net — data via Merill Fernando's open archive (MIT).