Kerberos delegation server allowlist

Setting the policy assigns servers that Google Chrome may delegate to. Separate multiple server names with commas. Wildcards, *, are allowed.

Leaving the policy unset means Google Chrome won't delegate user credentials, even if a server is detected as intranet.

Example value:

Supported on: At least Microsoft Windows 7 or Windows Server 2008 family

Kerberos delegation server allowlist

Registry PathSoftware\Policies\Google\ChromeOS
Value NameAuthNegotiateDelegateAllowlist
Value TypeREG_SZ
Default Value


Administrative Templates (Computers)

Administrative Templates (Users)