Skip to main content
Version: 2.1.1-preview

Test-MtAdUserSpnTotalCount

SYNOPSIS

Counts the total number of SPNs configured on user accounts.

SYNTAX

Test-MtAdUserSpnTotalCount [-ProgressAction <ActionPreference>] [<CommonParameters>]

DESCRIPTION

This test retrieves all Service Principal Names (SPNs) configured on user objects. User accounts with SPNs are particularly sensitive as they can be targets for Kerberoasting attacks. This test provides visibility into the scope of user SPNs in the environment.

EXAMPLES

EXAMPLE 1

Test-MtAdUserSpnTotalCount

Returns $true if SPN data is accessible, $false otherwise. The test result includes the total count of user SPNs.

PARAMETERS

-ProgressAction

Determines how PowerShell responds to progress updates generated by a script, cmdlet, or provider, such as the progress bars generated by Write-Progress.

Type: ActionPreference
Parameter Sets: (All)
Aliases: proga

Required: False
Position: Named
Default value: None
Accept pipeline input: False
Accept wildcard characters: False

CommonParameters

This cmdlet supports the common parameters: -Debug, -ErrorAction, -ErrorVariable, -InformationAction, -InformationVariable, -OutVariable, -OutBuffer, -PipelineVariable, -Verbose, -WarningAction, and -WarningVariable. For more information, see about_CommonParameters.

INPUTS

OUTPUTS

System.Boolean

NOTES

https://maester.dev/docs/commands/Test-MtAdUserSpnTotalCount