[Samba] freeradius + NTLM + samba AD 4.5.x

Dr. Peer-Joachim Koch pkoch at bgc-jena.mpg.de
Mon Mar 26 12:06:24 UTC 2018


Hi,

we have updated our samba AD domain from 4.4.x to 4.5.x.

The release notes for 4.5.0 included  "NTLMv1 authentication disabled by 
default".

So we had to enable it to get our radius (freeradius) server working 
(for 802.1x).

What would be the best way to change the freeradius configuration in 
such a way,

that we can disable NTLMv1 again.

The radius server is used for WLAN (802.1x) and for VPN.

How insecure is NTLMv1 ?


-- 
Bye,
     Peer
________________________________________________________

Max-Planck-Institut für Biogeochemie
Dr. Peer-Joachim Koch
Hans-Knöll Str.10            Telefon: ++49 3641 57-6705
D-07745 Jena                 Telefax: ++49 3641 57-7705




More information about the samba mailing list