Unfortunately, the network trace you provided is useless, because it decodes Ethernet/IP/UDP, then does not show what matters: the contents of the Kerberos messages in the UDP packets. Try something like Ethereal, which can decode those as well. -- Richard Silverman res at qoxp.net