It looks like the recent changes to 'correct' NTLMSSP have broken NTLMv2 in some way - Probably in much the same way that we suddenly got LM based session keys once we got the rest correct.
In particular, it seems that the feilds in the NTLMSSP challange packet may have been re-ordered (Netbios name, domain name etc). Can you give this a look, and try out NTLMv2 to a Samba PDC? Thanks, Andrew Bartlett -- Andrew Bartlett [EMAIL PROTECTED] Manager, Authentication Subsystems, Samba Team [EMAIL PROTECTED] Student Network Administrator, Hawker College [EMAIL PROTECTED] http://samba.org http://build.samba.org http://hawkerc.net