Google Groups no longer supports new Usenet posts or subscriptions. Historical content remains viewable.
Dismiss

NTLM authentication via VPN tunnel

94 views
Skip to first unread message

Vaughn Pennington

unread,
Jun 15, 2000, 3:00:00 AM6/15/00
to fire...@lists.gnac.net
Can anybody tell me if NTLM authentication will work via a VPN connection? Thanks.


-
[To unsubscribe, send mail to majo...@lists.gnac.net with
"unsubscribe firewalls" in the body of the message.]

Aaron C. Springer

unread,
Jun 15, 2000, 3:00:00 AM6/15/00
to Vaughn Pennington
mmm yes, why wouldn't it?


acs


_______________________
Aaron C. Springer
a.co...@ix.netcom.com
pgp key published
_______________________

Kostas Evangelinos

unread,
Jun 16, 2000, 3:00:00 AM6/16/00
to Aaron C. Springer
It might not work because NTLM is not proxyable. Basically it is a
challenge-response protocol which uses the client IP when hashing
the server provided nonce.

In short, if you proxy or if you use NAT you lose.

Later,
Kos

Aaron C. Springer

unread,
Jun 16, 2000, 3:00:00 AM6/16/00
to Kostas Evangelinos
Right, but proxy and NAT have nothing to do with tunnels.. If you have a tunnel
up you are a node on the remote net.. (more or less, depending on config
details).. but the question was VPN right? Put proxies and NAT in with tunnels
and yes it gets more complex..

acs

Bernard Andrews

unread,
Jun 20, 2000, 3:00:00 AM6/20/00
to
NTLM is proxyable because we do it through internal proxy based firewalls
(Gauntlet).

Regards
Bernard Andrews

"Kostas Evangelinos" <k...@bastard.net> wrote in message
news:fa.g4gcem...@ifi.uio.no...

0 new messages