I am going thru the samba source code to get a better understanding of NTLMv2 auth. The following information is used for authorising the user/machine: 1. Server Challenge 2. Client NTLMSSP AUTH message which will have ntlm response, lm response. The ntlm response has client challenge.