Microsoft deprecates Windows NTLM authentication protocol

Share:

Microsoft has officially deprecated NTLM authentication on Windows and Windows servers, stating that developers should transition to Kerberos or Negotiation authentication to prevent problems in the future.

New Technology LAN Manager, better known as NTLM, is an authentication protocol first released in 1993 as part of Windows NT 3.1 and as the successor to the LAN Manager (LM) protocol.

Microsoft says the NTLM protocols, which are still widely used today, are no longer under active development as of June and will be phased out in favor of more secure alternatives.

This move isn’t surprising, as Microsoft first announced its intention to kill off the aging authentication protocol in October 2023, urging admins to move to Kerberos and other contemporary authentication systems, like Negotiate.

NTLM has been extensively abused in cyberattacks known as ‘NTLM Relay’ attacks, where Windows domain controllers are taken over by forcing them to authenticate against malicious servers.

Despite Microsoft introducing new measures to defend against those attacks, like SMB security signing, attacks on NTLM authentication continue.

For example, password hashes can still be snatched and used in “pass-the-hash” attacks, obtained in phishing attacks, or extracted directly from stolen Active Directory databases or a server’s memory. The attackers can then crack the hashes to get a user’s plaintext password.

Apart from the weaker encryption used in NTLM, compared to more modern protocols like Kerberos, the protocol’s performance is subpar, requiring more network round trips, and does not support single sign-on (SSO) technologies.

All that said, NTLM is considered severely outdated by 2024 security and authentication standards, so Microsoft is deprecating it.

NTLM phase-out process

NTLM will still work in the next release of Windows Server and the next annual release of Windows. Still, users and application developers should transition to ‘Negotiate,’ which attempts to authenticate with Kerberos first and falls back to NTLM only when necessary.

Microsoft recommends that system administrators utilize auditing tools to understand how NTLM is being used within their environment and identify all instances that need to be considered in formulating a transition plan.

For most applications, replacing NTLM with Negotiate can be achieved by a one-line change in the ‘AcquireCredentialsHandle’ request to the Security Support Provider Interface (SSPI). However, there are exceptions where more extensive changes might be required.

Negotiate has a built-in fallback to NTLM to mitigate compatibility issues during the transition period.

Administrators stuck with authentication problems can check out Microsoft’s Kerberos troubleshooting guide.

Source

Leave a Comment

Your email address will not be published. Required fields are marked *

loader-image
London, GB
1:44 pm, Mar 16, 2025
weather icon 9°C
L: 8° | H: 11°
broken clouds
Humidity: 55 %
Pressure: 1024 mb
Wind: 12 mph NNE
Wind Gust: 0 mph
UV Index: 0
Precipitation: 0 mm
Clouds: 75%
Rain Chance: 0%
Visibility: 10 km
Sunrise: 6:12 am
Sunset: 6:06 pm
DailyHourly
Daily ForecastHourly Forecast
Today 9:00 pm
weather icon
8° | 11°°C 0 mm 0% 11 mph 70 % 1026 mb 0 mm/h
Tomorrow 9:00 pm
weather icon
3° | 9°°C 0 mm 0% 10 mph 89 % 1029 mb 0 mm/h
Tue Mar 18 9:00 pm
weather icon
4° | 10°°C 0 mm 0% 12 mph 78 % 1027 mb 0 mm/h
Wed Mar 19 9:00 pm
weather icon
3° | 15°°C 0 mm 0% 7 mph 79 % 1022 mb 0 mm/h
Thu Mar 20 9:00 pm
weather icon
8° | 14°°C 0 mm 0% 7 mph 78 % 1021 mb 0 mm/h
Today 3:00 pm
weather icon
9° | 10°°C 0 mm 0% 11 mph 55 % 1024 mb 0 mm/h
Today 6:00 pm
weather icon
8° | 8°°C 0 mm 0% 8 mph 57 % 1024 mb 0 mm/h
Today 9:00 pm
weather icon
5° | 7°°C 0 mm 0% 3 mph 70 % 1026 mb 0 mm/h
Tomorrow 12:00 am
weather icon
5° | 5°°C 0 mm 0% 6 mph 84 % 1027 mb 0 mm/h
Tomorrow 3:00 am
weather icon
4° | 4°°C 0 mm 0% 7 mph 89 % 1027 mb 0 mm/h
Tomorrow 6:00 am
weather icon
3° | 3°°C 0 mm 0% 7 mph 81 % 1028 mb 0 mm/h
Tomorrow 9:00 am
weather icon
5° | 5°°C 0 mm 0% 7 mph 66 % 1029 mb 0 mm/h
Tomorrow 12:00 pm
weather icon
9° | 9°°C 0 mm 0% 8 mph 52 % 1028 mb 0 mm/h
Name Price24H (%)
Bitcoin(BTC)
€75,984.10
-1.81%
Ethereum(ETH)
€1,730.43
-2.24%
Tether(USDT)
€0.92
-0.01%
XRP(XRP)
€2.11
-6.05%
Solana(SOL)
€118.28
-4.72%
USDC(USDC)
€0.92
-0.01%
Dogecoin(DOGE)
€0.154176
-4.98%
Shiba Inu(SHIB)
€0.000012
-0.63%
Pepe(PEPE)
€0.000006
-5.44%
Peanut the Squirrel(PNUT)
€0.189019
20.47%
Scroll to Top