Send LM & NTLM - use NTLMv2 session security if negotiated

D

DAVID GARDNER

Are any documented vulnerabilities in this setting Send
LM & NTLM - use NTLMv2 session security if negotiated on
domain controllers. We use dos boot disk to image our
workstations.
 
S

Steven L Umbach

If you use lm there are two vulnerabilities. It would be very easy for someone to
crack passwords stored on a domain controller IF they could get physical access to
them or a backup that includes the Active Directory database. The other vulnerability
is that lm hashes can be sniffed off of the network wire and possibly cracked by
someone malicious user on your network. However, unless you have W9X clients without
Directory Services Client installed, lm will not be used for regular authentication
and either NTLMv2 or kerberos will be used. So realistically your risk could be
minimal as long as domain administrator passwords are not used in situations where lm
hash would be used and your domain controllers and backups are physically
ecure. --- Steve

http://www.sans.org/top20/#w3
http://web.mit.edu/pismere/support/for-cont-admins/security-info/ntlm.html
http://www.winnetmag.com/Articles/Index.cfm?ArticleID=3844&pg=3
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top