Notices

Water Fountain General Chit/Chat

Reply
 
LinkBack Thread Tools
Old 05-17-05, 09:05 PM   #1 (permalink)
schrags11
Guest
 
Posts: n/a
Domain passwords

Using active directory, are all the users passwords also kept locally, and not just on the server?
  Reply With Quote
Sponsor Ads
Old 05-17-05, 09:07 PM   #2 (permalink)
wooch
Guest
 
Posts: n/a
A cached copy of the passwords are kept for logging in when not connected to the domain network.

The clients use NTLM to authenticate to the DC. If a DC isn't present, or the network cable is unplugged, the LSASS service uses the cached password information stored in the client PC's registry.

Last edited by wooch; 05-17-05 at 09:11 PM.
  Reply With Quote
Old 05-17-05, 09:07 PM   #3 (permalink)
Aximsite Administrator
 
deftech's Avatar
Addicted Member
 
Join Date: Feb 2003
Location: Arkansas
Posts: 5,635
Thanked 3 Times in 2 Posts

Awards Showcase
Moderator Medal Admin Medal Bronze Poster 
Total Awards: 3

It depends on how the network is configured. The client machines could be set to cache passwords, but most places disable that if they are using AD.
__________________
Jordan M. Wigley
Aximsite.com
Email: jordan AT aximsite.com


.


To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
Come join the friendly community at
To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
deftech is offline   Reply With Quote
Old 05-17-05, 09:08 PM   #4 (permalink)
schrags11
Guest
 
Posts: n/a
In the SAM file in the registry like regular users, by any chance, lol?
  Reply With Quote
Old 05-17-05, 09:13 PM   #5 (permalink)
Aximsite Legend
 
Howard2k's Avatar
Addicted Member
 
Join Date: Jun 2003
Location: Toronto, Canada
Posts: 13,721
Thanked 4 Times in 4 Posts

Awards Showcase
Aximsite Active Silver Member Moderator Medal Silver Poster 
Total Awards: 3

They still use NTLM? Aren't they using Kerberos now as the primary and NTLM2 as the backup?

Could be wrong. Not an NT geek anymore...
__________________
Always read stuff that will make you look good if you die in the middle of it.
Howard2k is offline   Reply With Quote
Old 05-17-05, 09:13 PM   #6 (permalink)
Aximsite Administrator
 
deftech's Avatar
Addicted Member
 
Join Date: Feb 2003
Location: Arkansas
Posts: 5,635
Thanked 3 Times in 2 Posts

Awards Showcase
Moderator Medal Admin Medal Bronze Poster 
Total Awards: 3

Which registry key are you referring to?

In AD, the sAMAccountName is the same as a userid (with domain\ on the front of it).
__________________
Jordan M. Wigley
Aximsite.com
Email: jordan AT aximsite.com


.


To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
Come join the friendly community at
To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
deftech is offline   Reply With Quote
Old 05-17-05, 09:15 PM   #7 (permalink)
schrags11
Guest
 
Posts: n/a
No, not a key, the whole file. (sam, security, default, etc). (Wanting to brute force it all summer, lol.)
  Reply With Quote
Reply

Tags
domain, passwords

Sponsor Ads

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -5. The time now is 11:49 AM.
Powered by vBulletin® Version 3.8.2
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.3.0
Copyright © 2003-09 LeckMedia, LLC