windows pass from SAM file

windows pass from SAM file

Secure Home | Search | About
 Microsoft Applications Security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
windows pass from SAM file hehe 10-16-2007
Posted by hehe on October 16, 2007, 11:31 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
is it true that 15 symbol pass is no better than 14 symbol, because hashes
are stored in two parts of 7 symbols each, and grand total is 14 symbols
anyway?


--

==
http://www.big-forum.com - Object Freaking Everything!
==




Posted by S. Pidgorny on October 17, 2007, 7:36 am
If you were  Registered and logged in, you could reply and use other advanced thread options
No.

--
Svyatoslav Pidgorny, MS MVP - Security, MCSE
-= F1 is the key =-

* http://sl.mvps.org * http://msmvps.com/blogs/sp *

> is it true that 15 symbol pass is no better than 14 symbol, because hashes
> are stored in two parts of 7 symbols each, and grand total is 14 symbols
> anyway?
>
>
> --
>
> ==
> http://www.big-forum.com - Object Freaking Everything!
> ==
>
>
>



Posted by Brian Komar on October 17, 2007, 8:51 am
If you were  Registered and logged in, you could reply and use other advanced thread options
Absolutely not.
Brian

> is it true that 15 symbol pass is no better than 14 symbol, because hashes
> are stored in two parts of 7 symbols each, and grand total is 14 symbols
> anyway?
>
>
> --
>
> ==
> http://www.big-forum.com - Object Freaking Everything!
> ==
>
>
>


Posted by =?ISO-8859-2?Q?Pawe=B3_Gole=F1 on October 17, 2007, 2:03 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
hehe wrote:
> is it true that 15 symbol pass is no better than 14 symbol, because hashes
> are stored in two parts of 7 symbols each, and grand total is 14 symbols
> anyway?

No, but 7 symbol password is equal in strength to 14 symbol password. In
standard configuration, because Windows stores two password hashes, LM
and NTLM. LM hash is weak and should be disabled.

How to prevent Windows from storing a LAN manager hash of your password
in Active Directory and local SAM databases

http://support.microsoft.com/kb/299656

--
Paweł Goleń
mailto:p_golen@ks.onet.pl
"Wszyscy przecież wiemy, że nikt nie dostaje żadnych spamów" - mój trol
UGVybCBTVUNLUw==

Posted by hehe on October 17, 2007, 6:25 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
alright, so 2 LM hashes, but where the last 15th symbol is gonna go?

--

==
http://www.big-forum.com - Object Freaking Everything!
==



> hehe wrote:
>> is it true that 15 symbol pass is no better than 14 symbol, because
>> hashes
>> are stored in two parts of 7 symbols each, and grand total is 14 symbols
>> anyway?
>
> No, but 7 symbol password is equal in strength to 14 symbol password. In
> standard configuration, because Windows stores two password hashes, LM
> and NTLM. LM hash is weak and should be disabled.
>
> How to prevent Windows from storing a LAN manager hash of your password
> in Active Directory and local SAM databases
>
> http://support.microsoft.com/kb/299656
>
> --
> Paweł Goleń
> mailto:p_golen@ks.onet.pl
> "Wszyscy przecież wiemy, że nikt nie dostaje żadnych spamów" - mój trol
> UGVybCBTVUNLUw==


Similar ThreadsPosted
Pass-through Authentication September 5, 2008, 3:07 pm
How to set up pass-through authentication on W2K server July 29, 2005, 2:41 pm
pass username/password between processes November 1, 2005, 2:50 am
*Need Help* With the Best Practice for Changing Admin Account Pass July 11, 2005, 3:36 pm
Windows NT file sharing June 29, 2005, 5:28 pm
How to create an ADF file for Windows May 1, 2006, 12:06 pm
Not able to open a locked mdb file from Windows 2003 December 22, 2005, 10:46 pm
File Security in Windows Server 2003. April 24, 2006, 2:06 pm
File Permissions on Windows 2003 Server April 25, 2006, 7:02 pm
Windows cannot access the specified device, path, or file." January 8, 2007, 2:54 pm

The site map in XML format XML site map

Contact Us | Privacy Policy