Mailing Lists: Apple Mailing Lists

Image of Mac OS face in stamp
 
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: LDAPv3 Plug-in



At 2:16 PM -0700 4/16/04, Anthony Vann wrote:
Does anyone know if NTLM can be disabled completely in Jaguar? Our AD
group just informed me they plan to cut off NTLMv1 in a month and I
need to be sure that my authentication isn't affected. I don't believe
they have setup a test server (obviously not smart) so I have no test
environment to test this against. Until I hear back from them, my
only option is to tweak my existing setup to see if I can disable
NTLM.

I think I saw an article somewhere that stated OS X can go between
NTLMv1 and NTLMv2 as needed but I can't recall if this is only
for Panther and/or Jaguar. We're looking to move to Panther soon,
but I still need to test and configure other components and don't
want to try and rush everything within a month.

If anybody has any suggestions or comments, it would be most
appreciated. Our loginwindow setup is using Kerberos, but
I'm mainly worried about our LDAP connection and if it is
using NTLM in anyway to connect to the W2K AD server.

If you disable NTLMv1 authentication, the Mac OS X smb client probably won't be able to authenticate, unless you're using kerberos as a part of AD. MS supplies an NTLMv2 UAM for SFM, if you're using SFM.

LDAP has nothing to do with NTLM on the whole.

--

http://www.4am-media.com
Mac OS X Consulting and Training
Michael Bartosh
email@hidden
303.517.0272
Denver, CO


"The surest way to corrupt a youth is to instruct him to hold in higher
regard those who think alike than those who think differently."

- -- Nietzsche
Think Different.
_______________________________________________
maclabmanager mailing list | email@hidden
Help/Unsubscribe/Archives: http://www.lists.apple.com/mailman/listinfo/maclabmanager
Do not post admin requests to the list. They will be ignored.


References: 
 >LDAPv3 Plug-in (From: Anthony Vann <email@hidden>)



Visit the Apple Store online or at retail locations.
1-800-MY-APPLE

Contact Apple | Terms of Use | Privacy Policy

Copyright © 2007 Apple Inc. All rights reserved.