Re: Win2K3 Password Hashing Algorithm



Windows 2003/XP has three methods: LM (MD4), NTLM hash (MD4), and
NTLMv2 (MD5). Only NTLMv2 is needed. The rest are for backwards
compatibility.

You can use only NTLMv2 by using the "LAN Manager authentication
level" group policy setting. This is under:

Computer Configuration > Windows Settings > Security Settings > Local
Policies > Security Options

Regards,

J Wolfgang Goerlich

On Jun 28, 10:36 am, Alan Mott <AlanM...@xxxxxxxxxxxxxxxxxxxxxxxxx>
wrote:
Does anyone out there know what hashing algorithm Win2K3 server/XP uses as
part of its authentication process? I'm given to understand that the NT Hash
is based on MD4. I find it hard to believe that Windows still appears to be
using a discredited hashing algorithm for its authentication, and hasn't
moved on to using MD5, Diffie-Hellman or SHA-1.


.



Relevant Pages

  • Re: Passwords with Lan Manager (LM) under Windows
    ... Well, that's an issue with the client, not NTLMv2. ... Passwords with Lan Manager under Windows ... Cain & Abel will use sorted Rainbow Tables for Cryptanalysis attacks ...
    (Pen-Test)
  • RIS 2003 wont work with NTLMv2!!
    ... RIS 2003 won't work with NTLMv2!! ... We are a Child Domain within an Active Directory Forest, we've got 1 Windows ... Network security: LAN Manager authentication level ...
    (microsoft.public.windowsxp.setup_deployment)
  • NTLMv2 / Windows 2000 Pro bug fix
    ... NTLMv2 to work properly on a Windows 2000 Pro desktop? ... our users can not map a share on a Windows NT server. ...
    (microsoft.public.win2000.security)
  • RE: Passwords with Lan Manager (LM) under Windows
    ... There are a number of issues with NTLMv2 and legacy applications such as ... Windows RAS that cause lower levels of authentication ... Cain & Abel will use sorted Rainbow Tables for Cryptanalysis attacks ... that is not the same thing as NTLMv2... ...
    (Pen-Test)
  • Re: NTLMv2
    ... On SAMBA you have to "allow encryted passwords" for NTLMv2 to ... > Windows 9x with AD support installed. ...
    (microsoft.public.security)