[NTSEC] NTDOM: negotiating either RC4 _or_ some other crypt mechanism

Luke Kenneth Casson Leighton lkcl at switchboard.net
Mon Nov 3 11:14:54 GMT 1997


On Sun, 2 Nov 1997, Jason Zions wrote:

> > if the negotiated flag is not 4, then you take the first 8 bytes of the
> > long-term session key, ignore the 8th byte and use this as a key to do a
> > DES_ECB_LM on the first 8 bytes of the 16 byte NT OWF.
> 
> I assume you actually mean "ignore the 8th bit of each byte", as is
> common for constructing DES 56-bit keys from a stream of bytes.

really??? ha ha.  nice one, microsoft.


> Or did
> you really mean "take the first seven bytes of the long-term session key
> and use this as a key to do a DES_ECB_LM on the first 8 bytes of the 16
> byte NT OWF."?

yes, i really mean that microsoft ignore the 8th byte.  this is common 
for microsoft's way of constructing DES 56-bit keys from 16 bytes.

luke


<a href="mailto:lkcl at switchboard.net"  > Luke Kenneth Casson Leighton </a>
<a href="http://mailhost.cb1.com/~lkcl"> Lynx2.7-friendly Home Page   </a>
<br><b> "Apply the Laws of Nature to your environment because your
         environment applies the Laws of Nature to you"               </b>



More information about the samba mailing list