In one of our networks, we use netTCPBinding. The WCF service is hosted on a Windows service that runs as a domain account.
From the event viewer, I see that my WCF service uses Kerberos authentication. Everything works without problems "without a box" with a simple default configuration without the <identity> element in the configuration file and without any SPN settings for the machine, for example:
setspn -a WcfServiceName
But from the many online links, I came to the conclusion that SPN configuration is necessary. It is unclear why in my case it works without these settings?
We are waiting for an explanation of WCF-security experts.
source share