Questions tagged [ntlm]

NTLM (NT LAN Manager) is a suite of Microsoft security protocols that provides authentication, integrity, and confidentiality to users.

189 questions
1
vote
3 answers

Sharepoint 2010 can't find domain users when granting permissions

I'm trying to grant permissions to other people to view a SharePoint site but when granting permissions it uses "Check Names" and claims any user or group that is part of a domain does not exist. It does this if I try granting permissions to the…
quani
  • 21
  • 1
  • 1
  • 3
1
vote
3 answers

IIS7.5 Windows Authentication missing providers menu item (ntlm)

I'm trying to enable NTLM authentication on a Windows Server 2008 R2 machine with IIS 7.5 for a specific file in my web root. I've been following these instructions http://docs.moodle.org/en/NTLM_authentication#IIS_Configuration In the IIS Manager I…
Alex Bilbie
  • 111
  • 1
  • 3
1
vote
4 answers

IIS6 site using integrated authentication (NTLM) fails when accessed with Win7 / IE8

I'm having pretty similar problems as described in case 139099, but the fix there doesn't seem to work for me. Here's the details: Server: Win2003Srv R2 SP2 Stadalone, not a member of a domain. IIS6, TCP/443 (https). Anonymous access…
1
vote
2 answers

IE does not send NTLM domain

I have a problem with NTLM single-sign-on with IE8. We've got multiple domain controllers and users from multiple domains that we try to authenticate to a web application via NTLMv1 passthru. Somehow IE fails to send the user's domain in the NTLM…
1
vote
3 answers

Sharepoint asks for NTLM credentials for every unique URL. How do I stop it?

I'm tasked with troubleshooting a problem we're having with a SP2010 site. The app is external, and there are several clients that must connect. Some clients are receiving a crazy amount of credential requests when trying to log on. It appears to…
Camron B
  • 311
  • 1
  • 2
  • 9
1
vote
4 answers

Can we have Linked Servers when using NTLM?

I don't have access to the Active Directory settings, nor do I have access to change anything on the linked server. From everything I've read, it seems like this means I cannot use Kerberos - which is a big problem, because I don't know how to use a…
BlueRaja
  • 1,096
  • 1
  • 11
  • 18
1
vote
0 answers

Windows Server 2012 R2 Resets SMB Negotiate Protocol Request

Windows Server 2012 R2 Standard resets SMB Negotiate Protocol Request packet, which should be the first step for NTLM negotiation. Server IP is 10.49.0.3. Client IP is 10.49.0.194. The client is a proxy that is trying to complete NTLM relay. What…
avocado123
  • 11
  • 2
1
vote
0 answers

Windows Remote Desktop defaulting to NTLM

The issue: I have a Virtual Host - VHost.domian.com. When I try to connect from my laptop - Laptop.domain.com - it seems to be trying to use NTLM for authentication and not Kerberos. Note: My laptop is not the only client we tried. The issue is…
1
vote
1 answer

GPO settings for Kerberos authentication

My customer requires SSO in Windows domain for my Linux-based web/application server. Server have its own keytab installed and it all does work fine. Windows domain (EXAMPLE.ORG) have a service user account with SPN HTTP/server.example.org…
kab00m
  • 498
  • 3
  • 10
1
vote
0 answers

Web application - Integrated windows authentication issues with layer 4 load balancer

Evening folks We currently have an internally developed web application that is hosted on IIS using Windows Authentication. Our users use Edge in IEMode to connect to our web app - currently they don’t have to enter any credentials as IE is using…
Ahimsa
  • 11
  • 1
1
vote
1 answer

How to restrict NTLM V1 to select servers?

The domain I'm working on currently has NTLM V1 enabled for Domain Controllers. I've done some tests and discovered that only a few application servers require NTLM V1. Unfortunately I have to allow those servers to continue using NTLM V1 for…
Prox
  • 111
  • 2
1
vote
0 answers

Apache reverse proxy to site using NTLM authentication fails with mod_rewrite but not mod_proxy

We have a reverse proxy server in front of an Exchange server and would like to lock down more of the paths. Minimized examples: Fails (but works for all pages that don't require authentication): ServerName…
melds
  • 231
  • 2
  • 9
1
vote
3 answers

Clear cached authentication for network share

Context: I map a cifs share in windows using NTLMv2 authentication, as the legacy server doesn't support kerberos. I am not prompted for login: net use S: \\server.domain.com\share /persistent:yes The command completed successfully. This is fine…
Cpt.Whale
  • 307
  • 3
  • 11
1
vote
0 answers

Remote Desktop to W10 with NTLM Disabled

We recently disable NTLM on our DCs (Default Domain Controllers Policy - Restrict NTLM: Deny all The problem is when some (not all) Windows 10 workgroup clients (connected with VPN) try to open a Remote Desktop to some Windows 10 Domain Clients they…
1
vote
1 answer

Default for lmcompatibilitylevel if it doesn't exist

If the registry item lmcompatibilitylevel in HKLM\System\CurrentControlSet\Control\Lsa does not exist, when I look at the local policy Network Security:LAN Mananager authentication level, it shows 'Not Defined' in the policy editor, and blank in the…
jfbradfo
  • 46
  • 1
  • 5