[4012] in WWW Security List Archive
Re: IIS Authentication Protocol
daemon@ATHENA.MIT.EDU (Harry Mantakos)
Fri Jan 17 20:31:52 1997
To: Lance Travis (CPLabs Boston) <cmt@dascom.com>
cc: www-security@ns2.rutgers.edu, cmt@cplabs.com
In-reply-to: Your message of "Fri, 17 Jan 1997 12:09:22 PST."
<199701171922.LAA19408@dascom.com>
Date: Fri, 17 Jan 1997 17:04:39 -0500
From: Harry Mantakos <harry@meretrix.com>
Errors-To: owner-www-security@ns2.rutgers.edu
>The Microsoft IIS documentation refers to Windows NT
>Challenge/Response authentication as one of 2 authentication methods
>supported (basic is the other). Does anyone know where I can find
>more information about the actual authentication protocol that they
>are using and what encryption algorithm it uses for password
>encryption?
NTLM challenge/response is described in the CIFS draft:
ftp://ds.internic.net/internet-drafts/draft-heizer-cifs-v1-spec-00.txt
-harry
-------------------------------------------------------------------------
Human: Harry Mantakos USPS: 547 E. Gittings St. Baltimore, MD 21230
Email: harry@meretrix.com Evil twins: harry@tis.com, harry@cs.umd.edu