Hello,
apparently the "double-hop" problem (https://learn.microsoft.com/en-us/answers/questions/744867/remote-credential-guard-double-hop-issue-after-ser) when using Remote Credential Guard (RCG) on a Windows 11 22H2 (Build 22621.1702) endpoint is present again. I.e. after connecting via mstsc /remoteGuard to a Windows 11 PC it is not possible to access network drives. A login dialog appears with the error message "No connection to a domain controller could be established to handle the authentication request."
Win11 configuration (target system):
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Lsa.
"DisableRestrictedAdmin"=dword:00000000
(https://learn.microsoft.com/en-us/windows/security/identity-protection/remote-credential-guard)
Configuration Win10/Win11 (source system):
Encryption Oracle Remediation - Force: Updated Clients
Remote host allows delegation of non-exportable credentials - Active
Restrict delegation of credentials to remote servers - Active (Require Remote Credential Guard)
The only thing that currently helps is to lock the computer 1x and log in again. After that the connection to network drives etc. works.
The problem does not exist between Windows 10 systems with the same GPO settings. There everything works as it should (even with activated Credential Guard).
Any help would appreciated. Thx.
cu..
Z. Embaxter