Saturday, February 24, 2024

Prepare for NTLM disable in your domain environment


Microsoft has made an announcement stating that the NTLM authentication protocol will be disabled in Windows 11. Instead, it will be replaced by Kerberos, which is currently the default authentication protocol in Windows versions above Windows 2000.

 

https://petri.com/microsoft-disable-ntlm-windows-11/

 

To prepare for this change is coming, you can enable a GPO to audit what application is using NTLM I n your environment and also what version of NTLM still using?

 

 

https://learn.microsoft.com/en-us/troubleshoot/windows-server/windows-security/audit-domain-controller-ntlmv1

https://superuser.com/questions/1694421/how-can-i-find-out-what-is-using-ntlm-in-my-environment

https://mahim-firoj.medium.com/how-to-check-what-ntlm-version-you-are-using-in-your-domain-9eb4aed9f317

https://4sysops.com/archives/auditing-and-restricting-ntlm-authentication-using-group-policy/

 

Print Friendly and PDF
Share/Bookmark

No comments:

Post a Comment