Kerberos delegation server allowlist

Setting the policy assigns servers that Google Chrome may delegate to. Separate multiple server names with commas. Wildcards, *, are allowed.

Leaving the policy unset means Google Chrome won't delegate user credentials, even if a server is detected as intranet.

Example value: foobar.example.com

Supported on: At least Microsoft Windows 7 or Windows Server 2008 family

Kerberos delegation server allowlist

Registry HiveHKEY_CURRENT_USER
Registry PathSoftware\Policies\Google\ChromeOS
Value NameAuthNegotiateDelegateAllowlist
Value TypeREG_SZ
Default Value

chromeos.admx

Administrative Templates (Computers)

Administrative Templates (Users)