Encrypted passwords

Luke Kenneth Casson Leighton lkcl at samba.org
Wed Feb 23 17:39:53 GMT 2000


the only time the hashes are sent over-the-wire is in "interactive"
NETLOGON NetrSamLogon calls.

they are encrypted with, untimately, the workstation trust account
password.


On Wed, 23 Feb 2000, Richard Sharpe wrote:

> Hi,
> 
> I am interested in confirming what happens with Windows clients when
> encrypted passwords are in use.
> 
> As I understand it, Win95 uses the older LM Hash, while NT uses the newer
> NT hash.
> 
> However, is the hash sent over the wire, or, is it more like a challenge is
> sent in the NetProt response, and this challenge is encrypted with the
> user's hash, while the server performs the same calculation ...
> 
> 
> 
> Regards
> -------
> Richard Sharpe, sharpe at ns.aus.com, Master Linux Administrator :-),
> Samba (Team member, www.samba.org), Ethereal (Team member, www.zing.org)
> Co-author, SAMS Teach Yourself Samba in 24 Hours
> Author: First Australian 5-day, intensive, hands-on Linux SysAdmin course
> Author: First Australian 2-day, intensive, hands-on Samba course
> 

<a href=" mailto:lkcl at samba.org" > Luke Kenneth Casson Leighton    </a>
<a href=" http://cb1.com/~lkcl"  > Samba and Network Development   </a>
<a href=" http://samba.org"      > Samba Web site                  </a>
<a href=" http://www.iss.net"    > Internet Security Systems, Inc. </a>
<a href=" http://mcp.com"        > Macmillan Technical Publishing  </a>
 
ISBN1578701503 DCE/RPC over SMB: Samba and Windows NT Domain Internals



More information about the samba-technical mailing list