your mail

Luke Kenneth Casson Leighton lkcl at switchboard.net
Sat Dec 6 16:11:11 GMT 1997


> The thing to keep in mind in password syncronization is that UNIX passwords
> and NT (not LanMan) passwords cannot be decrypted from their respective
> one-way hash ciphertexts. That is, you *cannot* convert through some function
> F:
> 
> NT MD4 Hash = F(UNIX salted modified DES one-way hash); Not possible! 
> 
> or
> 
> UNIX salted modified DES one-way hash = F(NT MD4 Hash); Not possible!
> 
> [NOTE: You could probably brute-force the weaker LanMan passwords stored in
> the SAM back to plaintext although this would be quite compute intensive.]

or have a really big database...


More information about the samba mailing list