client use spnego

This variable controls whether Samba clients will try
to use Simple and Protected NEGOciation (as specified by rfc2478) with
supporting servers (including WindowsXP, Windows2000 and Samba
3.0) to agree upon an authentication
mechanism. This enables Kerberos authentication in particular.

When is also set to
yes extended security (SPNEGO) is required
in order to use NTLMv2 only within NTLMSSP. This behavior was
introduced with the patches for CVE-2016-2111.

Supported on: At least Microsoft Windows 7 or Windows Server 2008 family

client use spnego
Registry HiveHKEY_LOCAL_MACHINE
Registry PathSoftware\Policies\Samba\smb_conf\client use spnego
Value Nameclient use spnego
Value TypeREG_DWORD
Default Value1
True Value1
False Value0

samba.admx

Administrative Templates (Computers)