Kerberos delegation server allowlist

Setting the policy assigns servers that Google Chrome may delegate to. Separate multiple server names with commas. Wildcards, *, are allowed.

Leaving the policy unset means Google Chrome won't delegate user credentials, even if a server is detected as intranet.

Example value: foobar.example.com

Supported on: At least Microsoft Windows 7 or Windows Server 2008 family

Kerberos delegation server allowlist

Registry HiveHKEY_LOCAL_MACHINE or HKEY_CURRENT_USER
Registry PathSoftware\Policies\Google\Chrome
Value NameAuthNegotiateDelegateAllowlist
Value TypeREG_SZ
Default Value

chrome.admx

Administrative Templates (Computers)

Administrative Templates (Users)