Hello all,
Thanks for all your response! Special thanks to:
Ben Nagy
Lance Ecklesdafer
Gu Zheng
Robert Perciaccante
Jeff Deitz
Chris Williamson
Randy Graham
Patrick Prue
My orignal post is attached below. One mistake in it is our PDC server is NT4
not W2000 and our consultant company run the decrypt software on it as
administrator, what an unfair fight! :-)
Since our server is NT4, its weak encryption algorithm gives a chance to
cracker. The possible solutions are:
- restrict user password as 14 characters with some non-alphanums for temporary
solution
- Turn to W2000 with "complicated passwords" (cleanly install not upgrade from
NT4)
- Switch to LDAP for name service. (not sure)
Thanks & happy new year!
carl
Orignal post:
--------------------------------------------------------------
Hello all,
After running password cracking program on our W2000 PDC server, 98% passwords
are cracked out, even some very complicate passwords like - X1#!h0a_.
Is it attribute to the W2000 encryption method? I would like to persuade my boss
using LDAP as name service. Appreciate any information & idea! I will summarize.
Thanks & Merry Christmas!
carl
----------------------------------------------------------------
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]