I am new to using ISS, and hope someone can help me. I scanned a server
yesterday and came upon a medium threat that I cannot find a registry key
for.The box is a Win NT 4.0 Sp6 server. Do I need to create it ?? Here is
the vulnerability off the scan. If you can help me out I would really
appreciate it.
LM security: LAN Manager security ?
Additional Information More Information
This check determines if LAN Manager (LM) challenge/response authentication
is enabled for network authentication.
Remedy:
To enhance your LAN Manager Authentication Level:
In Windows NT:
CAUTION: Use Registry Editor at your own risk. Any change using Registry
Editor may cause severe and irreparable damage and may require you to
reinstall your operating system. Internet Security Systems cannot guarantee
that problems caused by the use of Registry Editor can be solved.
1.      Apply the latest Windows NT 4.0 Service Pack (SP4 or later),
available from the Windows NT Service Packs Web page. See References.
2.      Using the Registry Editor, set the
HKEY_LOCAL_MACHINE\System\CurrentControlSet\control\LSA\LMCompatibilityLevel
value to 1 (Send Windows NT authentication and LM authentication only if the
server requests it) or 2 (Never send LM authentication). If 2 is selected,
the host cannot connect to servers that support only LM authentication, such
as Windows 95 and Windows for Workgroups.

_______________________________________________
ISSForum mailing list
[EMAIL PROTECTED]

TO UNSUBSCRIBE OR CHANGE YOUR SUBSCRIPTION, go to 
https://atla-mm1.iss.net/mailman/listinfo

Reply via email to