Hi.

Before all I hope I'm saying this on the correct mailing list. If not 
please indicate me one that suits better.


I'm facing a serious problem on developing a server that supports NTLM 
authentication. I have Digest authentication working fine.

Let's start from the beginning.

I have an Application X running on Windows Mobile 5 Pocket PC. The only 
authentication that it supports is NTLM.

Until now I can send a type 2 message to the client and receive the type 
3 message reply.

First problem:
I can't understand the way how LMResponse is generated.
Applying the mechanism to generate the LMResponse with the challenge, 
that I send in type 2 message,and my well-known password I get a result:

0xBCEC636950EB97BC56734D30521BF5A537AD49F98EC25EA9

that never changes... By other hand, the LMResponse that I receive on 
the Type 3 Message is always changing and I can't understand why. Anyone 
have any clue?



Second problem:
When the server sends a 200 OK, confirming that the password is valid, 
it should send a header on the message like this:

Authentication-Info: 
srand="A65DA123",snum="1",opaque="0D7BA7B4",qop="auth",targetname="mcg.wit-software.com",realm="mcg",rspauth="01000000E7D918909DA1DF6B64000000"

Ok... Here I have 3 problems: what is srand? what is snum? what is rspauth?
I can't find any RFC explaining this.

Anyone can help me understand this?


Thanks,
Nuno Centeio



_______________________________________________
Sip-implementors mailing list
[email protected]
https://lists.cs.columbia.edu/cucslists/listinfo/sip-implementors

Reply via email to