OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Luke Kenneth Casson Leighton (lkcl_at_SAMBA-TNG.ORG)
Date: Thu Feb 06 2003 - 15:45:01 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    On Thu, Feb 06, 2003 at 01:36:52PM -0600, Christopher R. Hertel wrote:
    > Content-Type: text/plain; charset=us-ascii
    > Content-Transfer-Encoding: 7bit
    >
    > While trying to document NTLMv2 authentication, I stumbled across
    > something known as NTLMv2 Session Security. Does anyone know what this
    > is?

     yes.

    > I can set
    >
    > HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\LSA\LMCompatibilityLevel
    >
    > to 1 to "enable" NTLMv2 Session Security, but I'm not sure what it
    > does. Some sources say that it allows the client and server to
    > 'negotiate' the use of NTLMv2 challenge/response (how?). Other sources
    > say that it provides message integrity and confidentiality (how?).

     chris,

     talk to someone who sponsors the samba team, get them to pay
     me some money and i will be more than happy to tell you, and
     anyone else who wants to know, what i know about NTLMv2.

     no money, no info.

     some money, lots of info.

     l.

    ----------------------------------------------------------------
    Users Guide http://discuss.microsoft.com/archives/mailfaq.asp
    contains important info including how to unsubscribe. Save time, search
    the archives at http://discuss.microsoft.com/archives/index.html