Micron Document
<!DOCTYPE html>
<html class="client-nojs vector-feature-night-mode-disabled vector-feature-language-in-header-enabled vector-feature-language-in-main-page-header-disabled vector-feature-page-tools-pinned-disabled vector-feature-toc-pinned-clientpref-1 vector-feature-main-menu-pinned-disabled vector-feature-limited-width-clientpref-1 vector-feature-limited-width-content-enabled vector-feature-custom-font-size-clientpref-1 vector-feature-appearance-pinned-clientpref-1 vector-sticky-header-enabled" lang="en" dir="ltr"><head>
<meta charset="UTF-8">
<title>LAN Manager</title>
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<link rel="canonical" href="https://en.wikipedia.org/wiki/LAN_Manager"> <link href="./mw/ext.cite.styles.css" rel="stylesheet" type="text/css">
<link href="./mw/ext.math.styles.css" rel="stylesheet" type="text/css">
<link href="./mw/skins.vector.icons.css" rel="stylesheet" type="text/css">
<link href="./mw/skins.vector.search.codex.styles.css" rel="stylesheet" type="text/css">
<link href="./mw/skins.vector.styles.css" rel="stylesheet" type="text/css">
<link href="./mw/user.styles.css" rel="stylesheet" type="text/css">
<meta name="ResourceLoaderDynamicStyles" content="">
<link rel="stylesheet" type="text/css" href="./mw/site.styles.css">
<link rel="stylesheet" type="text/css" href="./mw/noscript.css">
<link rel="stylesheet" type="text/css" href="./footer.css">
<link rel="stylesheet" type="text/css" href="./vector-2022.css">
</head>
<body class="skin--responsive skin-vector skin-vector-search-vue mediawiki ltr sitedir-ltr mw-hide-empty-elt ns-0 ns-subject page-LAN_Manager rootpage-LAN_Manager skin-vector-2022 action-view">
<div class="mw-page-container">
<div class="mw-page-container-inner">
<div class="mw-content-container">
<main id="content" class="mw-body">
<header class="mw-body-header vector-page-titlebar">
<h1 id="firstHeading" class="firstHeading mw-first-heading">
<span id="openzim-page-title" class="mw-page-title-main"><span class="mw-page-title-main">LAN Manager</span></span>
</h1>
</header>
<a id="top"></a>
<div id="bodyContent" class="vector-body ve-init-mw-desktopArticleTarget-targetContainer" aria-labelledby="firstHeading" data-mw-ve-target-container="">
<div id="mw-content-text" class="mw-body-content mw-content-ltr" lang="en" dir="ltr"><div class="mw-content-ltr mw-parser-output" lang="en" dir="ltr">
<p class="mw-empty-elt">

</p>

<style data-mw-deduplicate="TemplateStyles:r1295905060">
/* start https://en.wikipedia.org/ */


.mw-parser-output .infobox-subbox{padding:0;border:none;margin:-3px;width:auto;min-width:100%;font-size:100%;clear:none;float:none;background-color:transparent}.mw-parser-output .infobox-3cols-child{margin:auto}.mw-parser-output .infobox .navbar{font-size:100%}@media screen{html.skin-theme-clientpref-night .mw-parser-output .infobox-full-data:not(.notheme)>div:not(.notheme)[style]{background:#1f1f23!important;color:#f8f9fa}}@media screen and (prefers-color-scheme:dark){html.skin-theme-clientpref-os .mw-parser-output .infobox-full-data:not(.notheme)>div:not(.notheme)[style]{background:#1f1f23!important;color:#f8f9fa}}@media(min-width:640px){body.skin--responsive .mw-parser-output .infobox-table{display:table!important}body.skin--responsive .mw-parser-output .infobox-table>caption{display:table-caption!important}body.skin--responsive .mw-parser-output .infobox-table>tbody{display:table-row-group}body.skin--responsive .mw-parser-output .infobox-table th,body.skin--responsive .mw-parser-output .infobox-table td{padding-left:inherit;padding-right:inherit}}


/* end https://en.wikipedia.org/ */
</style><table class="infobox vevent"><tbody><tr><th colspan="2" class="infobox-above" style="background-color: #e0e0e0;">LAN Manager</th></tr><tr><th scope="row" class="infobox-label" style="white-space: nowrap;"><a href="Programmer" title="Programmer">Developer</a></th><td class="infobox-data"><a href="Microsoft" title="Microsoft">Microsoft</a>, <a href="3Com" title="3Com">3Com</a></td></tr><tr><th scope="row" class="infobox-label" style="white-space: nowrap;">OS family</th><td class="infobox-data"><a href="OS/2" title="OS/2">OS/2</a></td></tr><tr><th scope="row" class="infobox-label" style="white-space: nowrap;">Working state</th><td class="infobox-data">Discontinued</td></tr><tr><th scope="row" class="infobox-label" style="white-space: nowrap;">Source model</th><td class="infobox-data"><a href="Closed_source" class="mw-redirect" title="Closed source">Closed source</a></td></tr><tr><th scope="row" class="infobox-label" style="white-space: nowrap;">Initial release</th><td class="infobox-data">1987<span style="display:none">&nbsp;(<span class="bday dtstart published updated">1987</span>)</span></td></tr><tr><th scope="row" class="infobox-label" style="white-space: nowrap;"><a href="Software_release_life_cycle" title="Software release life cycle">Final release</a></th><td class="infobox-data">2.2a / 1994<span style="display:none">&nbsp;(<span class="bday dtstart published updated">1994</span>)</span></td></tr><tr><th scope="row" class="infobox-label" style="white-space: nowrap;">Marketing target</th><td class="infobox-data"><a href="Local_area_network" title="Local area network">Local area networking</a></td></tr><tr><th scope="row" class="infobox-label" style="white-space: nowrap;">Update method</th><td class="infobox-data">Re-installation</td></tr><tr><th scope="row" class="infobox-label" style="white-space: nowrap;"><a href="Package_manager" title="Package manager">Package manager</a></th><td class="infobox-data">None</td></tr><tr><th scope="row" class="infobox-label" style="white-space: nowrap;">Supported platforms</th><td class="infobox-data"><a href="X86" title="X86">x86</a></td></tr><tr><th scope="row" class="infobox-label" style="white-space: nowrap;"><a href="Software_license" title="Software license">License</a></th><td class="infobox-data"><a href="Proprietary_software" title="Proprietary software">Proprietary</a></td></tr><tr><th scope="row" class="infobox-label" style="white-space: nowrap;">Preceded by</th><td class="infobox-data"><a href="MS-Net" title="MS-Net">MS-Net</a>, Xenix-NET, <a href="3%2BShare" title="3+Share">3+Share</a></td></tr><tr><th scope="row" class="infobox-label" style="white-space: nowrap;">Succeeded by</th><td class="infobox-data"><a href="Microsoft_Windows_NT_3.1" class="mw-redirect" title="Microsoft Windows NT 3.1">Microsoft Windows NT 3.1</a></td></tr></tbody></table>
<p><b>LAN Manager</b> is a discontinued <a href="Network_operating_system" title="Network operating system">network operating system</a> (NOS) available from multiple vendors and developed by <a href="Microsoft" title="Microsoft">Microsoft</a> in cooperation with <a href="3Com" title="3Com">3Com Corporation</a>. It was designed to succeed 3Com's <a href="3%2BShare" title="3+Share">3+Share</a> <a href="Server_(computing)" title="Server (computing)">network server</a> software which ran atop a heavily modified version of <a href="MS-DOS" title="MS-DOS">MS-DOS</a>.
</p>
<meta property="mw:PageProp/toc">
<div class="mw-heading mw-heading2"><h2 id="History">History</h2></div>
<p>The LAN Manager <a href="OS/2" title="OS/2">OS/2</a> operating system was co-developed by <a href="IBM" title="IBM">IBM</a> and <a href="Microsoft" title="Microsoft">Microsoft</a>, using the <a href="Server_Message_Block" title="Server Message Block">Server Message Block</a> (SMB) protocol. It originally used SMB atop either the <a href="NetBIOS_Frames" title="NetBIOS Frames">NetBIOS Frames</a> (NBF) protocol or a specialized version of the <a href="Xerox_Network_Systems" title="Xerox Network Systems">Xerox Network Systems</a> (XNS) protocol. These legacy protocols had been inherited from previous products such as <a href="MS-Net" title="MS-Net">MS-Net</a> for <a href="MS-DOS" title="MS-DOS">MS-DOS</a>, Xenix-NET for <a href="Xenix" title="Xenix">MS-Xenix</a>, and the afore-mentioned 3+Share. A version of LAN Manager for Unix-based systems called <b>LAN Manager/X</b> was also available. LAN Manager/X was the basis for <a href="Digital_Equipment_Corporation" title="Digital Equipment Corporation">Digital Equipment Corporation</a>'s <a href="Pathworks" title="Pathworks">Pathworks</a> product for <a href="OpenVMS" title="OpenVMS">OpenVMS</a>, <a href="Ultrix" title="Ultrix">Ultrix</a> and <a href="Tru64" class="mw-redirect" title="Tru64">Tru64</a>.<sup id="cite_ref-samba_1-0" class="reference"><a href="#cite_note-samba-1"><span class="cite-bracket">[</span>1<span class="cite-bracket">]</span></a></sup>
</p><p>Despite support from 3Com, IBM, Digital, and <a href="Digital_Communications_Associates" title="Digital Communications Associates">Digital Communications Associates</a>, <i><a href="PC_(magazine)" class="mw-redirect" title="PC (magazine)">PC</a></i> wrote in 1989, LAN Manager "has made a very small impression on the market and continues to receive the cold shoulder from buyers" compared to <a href="Novell_NetWare" class="mw-redirect" title="Novell NetWare">Novell NetWare</a>. The combined companies "pose a strong potential threat", however, the magazine added.<sup id="cite_ref-pc19891212_2-0" class="reference"><a href="#cite_note-pc19891212-2"><span class="cite-bracket">[</span>2<span class="cite-bracket">]</span></a></sup> In 1990, Microsoft announced LAN Manager 2.0 with a host of improvements, including support for <a href="TCP/IP" class="mw-redirect" title="TCP/IP">TCP/IP</a> as a transport protocol for SMB, using <a href="NetBIOS_over_TCP/IP" title="NetBIOS over TCP/IP">NetBIOS over TCP/IP</a> (NBT). The last version of LAN Manager, 2.2, which included an MS-OS/2 1.31 base operating system, remained Microsoft's strategic server system until the release of <a href="Windows_NT_3.1" title="Windows NT 3.1">Windows NT Advanced Server</a> in 1993.<sup id="cite_ref-3" class="reference"><a href="#cite_note-3"><span class="cite-bracket">[</span>3<span class="cite-bracket">]</span></a></sup>
</p>
<div class="mw-heading mw-heading3"><h3 id="Versions">Versions</h3></div>
<ul><li>1987 – MS LAN Manager 1.0 (Basic/Enhanced)</li>
<li>1989 – MS LAN Manager 1.1</li>
<li>1991 – MS LAN Manager 2.0</li>
<li>1992 – MS LAN Manager 2.1</li>
<li>1992 – MS LAN Manager 2.1a</li>
<li>1993 – MS LAN Manager 2.2</li>
<li>1994 – MS LAN Manager 2.2a</li></ul>
<p>Many vendors shipped licensed versions, including:
</p>
<ul><li><a href="3Com" title="3Com">3Com Corporation</a> <a href="3%2BOpen" class="mw-redirect" title="3+Open">3+Open</a></li>
<li>HP LAN Manager/X</li>
<li><a href="IBM_LAN_Server" title="IBM LAN Server">IBM LAN Server</a></li>
<li>Tapestry Torus</li>
<li><a href="Santa_Cruz_Operation" title="Santa Cruz Operation">The Santa Cruz Operation</a></li></ul>
<div class="mw-heading mw-heading2"><h2 id="Password_hashing_algorithm">Password hashing algorithm</h2></div>
<p>The LM hash is computed as follows:<sup id="cite_ref-4" class="reference"><a href="#cite_note-4"><span class="cite-bracket">[</span>4<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-davenport_5-0" class="reference"><a href="#cite_note-davenport-5"><span class="cite-bracket">[</span>5<span class="cite-bracket">]</span></a></sup>
</p>
<ol><li>The user's password is restricted to a maximum of fourteen characters.<sup id="cite_ref-6" class="reference"><a href="#cite_note-6"><span class="cite-bracket">[</span>Notes 1<span class="cite-bracket">]</span></a></sup></li>
<li>The user's password is converted to <a href="Uppercase" class="mw-redirect" title="Uppercase">uppercase</a>.</li>
<li>The user's password is encoded in the System OEM <a href="Code_page" title="Code page">code page</a>.<sup id="cite_ref-7" class="reference"><a href="#cite_note-7"><span class="cite-bracket">[</span>6<span class="cite-bracket">]</span></a></sup></li>
<li>This password is NULL-padded to 14 bytes.<sup id="cite_ref-KB828861_8-0" class="reference"><a href="#cite_note-KB828861-8"><span class="cite-bracket">[</span>7<span class="cite-bracket">]</span></a></sup></li>
<li>The “fixed-length” password is split into two 7-byte halves.</li>
<li>These values are used to create two <a href="Data_Encryption_Standard" title="Data Encryption Standard">DES</a> keys, one from each 7-byte half, by converting the seven bytes into a bit stream with the <a href="Most_significant_bit" class="mw-redirect" title="Most significant bit">most significant bit</a> first, and inserting a <a href="Parity_bit" title="Parity bit">parity bit</a> after every seven bits (so <code>1010100</code> becomes <code>10101000</code>). This generates the 64 bits needed for a DES key. (A DES key ostensibly consists of 64 bits; however, only 56 of these are actually used by the algorithm. The parity bits added in this step are later discarded.)</li>
<li>Each of the two keys is used to DES-encrypt the constant <a href="ASCII" title="ASCII">ASCII</a> string “<code>KGS!@#$%</code>”,<sup id="cite_ref-9" class="reference"><a href="#cite_note-9"><span class="cite-bracket">[</span>Notes 2<span class="cite-bracket">]</span></a></sup> resulting in two 8-byte ciphertext values. The DES CipherMode should be set to <a href="Block_cipher_mode_of_operation#Electronic_codebook_(ECB)" title="Block cipher mode of operation">ECB</a>, and PaddingMode should be set to <code>NONE</code>.</li>
<li>These two ciphertext values are concatenated to form a 16-byte value, which is the LM hash.</li></ol>
<div class="mw-heading mw-heading2"><h2 id="Security_weaknesses">Security weaknesses</h2></div>
<p>LAN Manager authentication uses a particularly weak method of <a href="Cryptographic_hash_function" title="Cryptographic hash function">hashing</a> a user's <a href="Password" title="Password">password</a> known as the LM hash algorithm, stemming from the mid-1980s when viruses transmitted by floppy disks were the major concern.<sup id="cite_ref-SecurityWatch_10-0" class="reference"><a href="#cite_note-SecurityWatch-10"><span class="cite-bracket">[</span>8<span class="cite-bracket">]</span></a></sup> Although it is based on <a href="Data_Encryption_Standard" title="Data Encryption Standard">DES</a>, a well-studied <a href="Block_cipher" title="Block cipher">block cipher</a>, the LM hash has several weaknesses in its design.<sup id="cite_ref-11" class="reference"><a href="#cite_note-11"><span class="cite-bracket">[</span>9<span class="cite-bracket">]</span></a></sup>
This makes such hashes crackable in a matter of seconds using <a href="Rainbow_table" title="Rainbow table">rainbow tables</a>, or in a few minutes using <a href="Brute-force_attack" title="Brute-force attack">brute force</a>. Starting with <a href="Windows_NT" title="Windows NT">Windows NT</a>, it was replaced by <a href="NTLM" title="NTLM">NTLM</a>, which is still vulnerable to rainbow tables, and brute force attacks unless long, unpredictable passwords are used, see <a href="Password_cracking" title="Password cracking">password cracking</a>. NTLM is used for logon with local accounts except on domain controllers since Windows Vista and later versions no longer maintain the LM hash by default.<sup id="cite_ref-SecurityWatch_10-1" class="reference"><a href="#cite_note-SecurityWatch-10"><span class="cite-bracket">[</span>8<span class="cite-bracket">]</span></a></sup> <a href="Kerberos_(protocol)" title="Kerberos (protocol)">Kerberos</a> is used in Active Directory Environments.
</p><p>The major weaknesses of LAN Manager authentication protocol are:<sup id="cite_ref-12" class="reference"><a href="#cite_note-12"><span class="cite-bracket">[</span>10<span class="cite-bracket">]</span></a></sup>
</p>
<ol><li>Password length is limited to a maximum of 14 characters chosen from the <a href="ASCII#ASCII_printable_characters" title="ASCII">95 ASCII printable characters</a>.</li>
<li>Passwords are not case sensitive. All passwords are converted into uppercase before generating the hash value. Hence LM hash treats PassWord, password, PaSsWoRd, PASSword and other similar combinations same as PASSWORD. This practice effectively reduces the LM hash <a href="Key_space_(cryptography)" class="mw-redirect" title="Key space (cryptography)">key space</a> to 69 characters.</li>
<li>A 14-character password is broken into 7+7 characters and the hash is calculated for each half separately. This way of calculating the hash makes it dramatically easier to crack, as the attacker only needs to <a href="Brute-force_attack" title="Brute-force attack">brute-force</a> 7 characters twice instead of the full 14 characters. This makes the effective strength of a 14-character password equal to only <span class="mwe-math-element mwe-math-element-inline"><span class="mwe-math-mathml-inline mwe-math-mathml-a11y" style="display: none;"><math xmlns="http://www.w3.org/1998/Math/MathML" alttext="{\displaystyle 2\times 69^{7}\approx 2^{44}}">
<semantics>
<mrow class="MJX-TeXAtom-ORD">
<mstyle displaystyle="true" scriptlevel="0">
<mn>2</mn>
<mo>×<!-- × --></mo>
<msup>
<mn>69</mn>
<mrow class="MJX-TeXAtom-ORD">
<mn>7</mn>
</mrow>
</msup>
<mo>≈<!-- ≈ --></mo>
<msup>
<mn>2</mn>
<mrow class="MJX-TeXAtom-ORD">
<mn>44</mn>
</mrow>
</msup>
</mstyle>
</mrow>
<annotation encoding="application/x-tex">{\displaystyle 2\times 69^{7}\approx 2^{44}}</annotation>
</semantics>
</math></span><img src="./b7fc46ecf677bbbe54c0b1285ad70d5cedce8a0f.svg" class="mwe-math-fallback-image-inline mw-invert skin-invert" aria-hidden="true" style="vertical-align: -0.338ex; width:13.519ex; height:2.676ex;" alt="{\displaystyle 2\times 69^{7}\approx 2^{44}}" loading="lazy"></span>, or twice that of a 7-character password, which is 3.7 trillion times less complex than the <span class="mwe-math-element mwe-math-element-inline"><span class="mwe-math-mathml-inline mwe-math-mathml-a11y" style="display: none;"><math xmlns="http://www.w3.org/1998/Math/MathML" alttext="{\displaystyle 69^{14}\approx 2^{86}}">
<semantics>
<mrow class="MJX-TeXAtom-ORD">
<mstyle displaystyle="true" scriptlevel="0">
<msup>
<mn>69</mn>
<mrow class="MJX-TeXAtom-ORD">
<mn>14</mn>
</mrow>
</msup>
<mo>≈<!-- ≈ --></mo>
<msup>
<mn>2</mn>
<mrow class="MJX-TeXAtom-ORD">
<mn>86</mn>
</mrow>
</msup>
</mstyle>
</mrow>
<annotation encoding="application/x-tex">{\displaystyle 69^{14}\approx 2^{86}}</annotation>
</semantics>
</math></span><img src="./40a63f458558aeda19474f03a5acd3fafed8ca43.svg" class="mwe-math-fallback-image-inline mw-invert skin-invert" aria-hidden="true" style="vertical-align: -0.338ex; width:10.338ex; height:2.676ex;" alt="{\displaystyle 69^{14}\approx 2^{86}}" loading="lazy"></span> theoretical strength of a 14-character single-case password. As of 2020, a computer equipped with a high-end <a href="Graphics_processor" class="mw-redirect" title="Graphics processor">graphics processor</a> (GPUs) can compute 40 billion LM-hashes per second.<sup id="cite_ref-13" class="reference"><a href="#cite_note-13"><span class="cite-bracket">[</span>11<span class="cite-bracket">]</span></a></sup> At that rate, all 7-character passwords from the 95-character set can be tested and broken in half an hour; all 7-character <a href="Alphanumeric" class="mw-redirect" title="Alphanumeric">alphanumeric</a> passwords can be tested and broken in 2 seconds.</li>
<li>If the password is 7 characters or less, then the second half of hash will always produce same constant value (0xAAD3B435B51404EE). Therefore, a password is less than or equal to 7 characters long can be identified visibly without using tools (though with high speed GPU attacks, this matters less).</li>
<li>The hash value is sent to network servers without <a href="Salt_(cryptography)" title="Salt (cryptography)">salting</a>, making it susceptible to <a href="Man-in-the-middle_attack" title="Man-in-the-middle attack">man-in-the-middle attacks</a> such as <a href="Pass_the_hash" title="Pass the hash">replay the hash</a>. Without salt, <a href="Time%E2%80%93memory_tradeoff" class="mw-redirect" title="Time–memory tradeoff">time–memory tradeoff</a> <a href="Pre-computed_dictionary_attack" class="mw-redirect" title="Pre-computed dictionary attack">pre-computed dictionary attacks</a>, such as a <a href="Rainbow_table" title="Rainbow table">rainbow table</a>, are feasible. In 2003, <a href="Ophcrack" title="Ophcrack">Ophcrack</a>, an implementation of the rainbow table technique, was published. It specifically targets the weaknesses of LM encryption, and includes pre-computed data sufficient to crack virtually all alphanumeric LM hashes in a few seconds. Many cracking tools, such as <a href="RainbowCrack" title="RainbowCrack">RainbowCrack</a>, <a href="Hashcat" title="Hashcat">Hashcat</a>, <a href="L0phtCrack" title="L0phtCrack">L0phtCrack</a> and <a href="Cain_(software)" class="mw-redirect" title="Cain (software)">Cain</a>, now incorporate similar attacks and make cracking of LM hashes fast and trivial.</li></ol>
<div class="mw-heading mw-heading2"><h2 id="Workarounds">Workarounds</h2></div>
<p>To address the security weaknesses inherent in LM encryption and authentication schemes, Microsoft introduced the <a href="NTLMv1" class="mw-redirect" title="NTLMv1">NTLMv1</a> protocol in 1993 with <a href="Windows_NT_3.1" title="Windows NT 3.1">Windows NT 3.1</a>. For hashing, NTLM uses <a href="Unicode" title="Unicode">Unicode</a> support, replacing <code>LMhash=DESeach(DOSCHARSET(UPPERCASE(password)), "KGS!@#$%")</code> by <code>NThash=<a href="MD4" title="MD4">MD4</a>(<a href="UTF-16" title="UTF-16">UTF-16</a>-LE(password))</code>, which does not require any padding or truncating that would simplify the key. On the negative side, the same DES algorithm was used with only <a href="56-bit_encryption" title="56-bit encryption">56-bit encryption</a> for the subsequent authentication steps, and there is still no salting. Furthermore, Windows machines were for many years configured by default to send and accept responses derived from both the LM hash and the NTLM hash, so the use of the NTLM hash provided no additional security while the weaker hash was still present. It also took time for artificial restrictions on password length in management tools such as User Manager to be lifted.
</p><p>While LAN Manager is considered obsolete and current Windows operating systems use the stronger NTLMv2 or <a href="Kerberos_(protocol)" title="Kerberos (protocol)">Kerberos</a> authentication methods, Windows systems before <a href="Windows_Vista" title="Windows Vista">Windows Vista</a>/<a href="Windows_Server_2008" title="Windows Server 2008">Windows Server 2008</a> enabled the LAN Manager hash by default for <a href="Backward_compatibility" title="Backward compatibility">backward compatibility</a> with legacy LAN Manager and <a href="Windows_ME" class="mw-redirect" title="Windows ME">Windows ME</a> or earlier clients, or legacy <a href="NetBIOS" title="NetBIOS">NetBIOS</a>-enabled applications. It has for many years been considered good security practice to disable the compromised LM and NTLMv1 authentication protocols where they aren't needed.<sup id="cite_ref-KB299656_14-0" class="reference"><a href="#cite_note-KB299656-14"><span class="cite-bracket">[</span>12<span class="cite-bracket">]</span></a></sup>
Starting with Windows Vista and Windows Server 2008, Microsoft disabled the LM hash by default; the feature can be enabled for local accounts via a security policy setting, and for <a href="Active_Directory" title="Active Directory">Active Directory</a> accounts by applying the same setting via domain <a href="Group_Policy" title="Group Policy">Group Policy</a>. The same method can be used to turn the feature off in Windows 2000, Windows XP and NT.<sup id="cite_ref-KB299656_14-1" class="reference"><a href="#cite_note-KB299656-14"><span class="cite-bracket">[</span>12<span class="cite-bracket">]</span></a></sup> Users can also prevent a LM hash from being generated for their own password by using a password at least fifteen characters in length.<sup id="cite_ref-KB828861_8-1" class="reference"><a href="#cite_note-KB828861-8"><span class="cite-bracket">[</span>7<span class="cite-bracket">]</span></a></sup>—NTLM hashes have in turn become vulnerable in recent years to various attacks that effectively make them as weak today as LanMan hashes were back in 1998.
</p>
<div class="mw-heading mw-heading2"><h2 id="Reasons_for_continued_use_of_LM_hash">Reasons for continued use of LM hash</h2></div>
<p>Many legacy third party <a href="Server_Message_Block" title="Server Message Block">SMB</a> implementations have taken considerable time to add support for the stronger protocols that Microsoft has created to replace LM hashing because the <a href="Open-source_software" title="Open-source software">open source</a> communities supporting these libraries first had to <a href="Reverse_engineering" title="Reverse engineering">reverse engineer</a> the newer protocols—<a href="Samba_(software)" title="Samba (software)">Samba</a> took 5 years to add <a href="NTLMv2" class="mw-redirect" title="NTLMv2">NTLMv2</a> support, while JCIFS took 10 years.
</p>
<table class="wikitable">

<caption>Availability of NTLM protocols to replace LM authentication
</caption>
<tbody><tr>
<th>Product
</th>
<th>NTLMv1 support
</th>
<th>NTLMv2 support
</th></tr>
<tr>
<td><a href="Windows_NT_3.1" title="Windows NT 3.1">Windows NT 3.1</a>
</td>
<td>RTM (1993)
</td>
<td>Not supported
</td></tr>
<tr>
<td><a href="Windows_NT_3.5" title="Windows NT 3.5">Windows NT 3.5</a>
</td>
<td>RTM (1994)
</td>
<td>Not supported
</td></tr>

<tr>
<td><a href="Windows_NT_3.51" title="Windows NT 3.51">Windows NT 3.51</a>
</td>
<td>RTM (1995)
</td>
<td>Not supported
</td></tr>
<tr>
<td><a href="Windows_NT_4" class="mw-redirect" title="Windows NT 4">Windows NT 4</a>
</td>
<td>RTM (1996)
</td>
<td>Service Pack 4<sup id="cite_ref-15" class="reference"><a href="#cite_note-15"><span class="cite-bracket">[</span>13<span class="cite-bracket">]</span></a></sup> (October 25, 1998)
</td></tr>
<tr>
<td><a href="Windows_95" title="Windows 95">Windows 95</a>
</td>
<td>Not supported
</td>
<td>Directory services client (released with <a href="Windows_2000" title="Windows 2000">Windows 2000</a> Server, February 17, 2000)
</td></tr>
<tr>
<td><a href="Windows_98" title="Windows 98">Windows 98</a>
</td>
<td>RTM
</td>
<td>Directory services client (released with <a href="Windows_2000" title="Windows 2000">Windows 2000</a> Server, February 17, 2000)
</td></tr>
<tr>
<td><a href="Windows_2000" title="Windows 2000">Windows 2000</a>
</td>
<td>RTM (February 17, 2000)
</td>
<td>RTM (February 17, 2000)
</td></tr>
<tr>
<td><a href="Windows_Me" title="Windows Me">Windows Me</a>
</td>
<td>RTM (September 14, 2000)
</td>
<td>Directory services client (released with <a href="Windows_2000" title="Windows 2000">Windows 2000</a> Server, February 17, 2000)
</td></tr>
<tr>
<td><a href="Samba_(software)" title="Samba (software)">Samba</a>
</td>
<td>?
</td>
<td>Version 3.0<sup id="cite_ref-16" class="reference"><a href="#cite_note-16"><span class="cite-bracket">[</span>14<span class="cite-bracket">]</span></a></sup> (September 24, 2003)
</td></tr>
<tr>
<td>JCIFS
</td>
<td>Not supported
</td>
<td>Version 1.3.0 (October 25, 2008)<sup id="cite_ref-17" class="reference"><a href="#cite_note-17"><span class="cite-bracket">[</span>15<span class="cite-bracket">]</span></a></sup>
</td></tr>
<tr>
<td><a href="IBM_AIX" title="IBM AIX">IBM AIX</a> (SMBFS)
</td>
<td>5.3 (2004)<sup id="cite_ref-18" class="reference"><a href="#cite_note-18"><span class="cite-bracket">[</span>16<span class="cite-bracket">]</span></a></sup>
</td>
<td>Not supported as of v7.1<sup id="cite_ref-19" class="reference"><a href="#cite_note-19"><span class="cite-bracket">[</span>17<span class="cite-bracket">]</span></a></sup>
</td></tr></tbody></table>
<p>Poor patching regimes subsequent to software releases supporting the feature becoming available have contributed to some organisations continuing to use LM Hashing in their environments, even though the protocol is easily disabled in <a href="Active_Directory" title="Active Directory">Active Directory</a> itself.
</p><p>Lastly, prior to the release of Windows Vista, many unattended build processes still used a <a href="DOS" title="DOS">DOS</a> boot disk (instead of <a href="Windows_PE" class="mw-redirect" title="Windows PE">Windows PE</a>) to start the installation of Windows using WINNT.EXE, something that requires LM hashing to be enabled for the legacy LAN Manager networking stack to work.
</p>
<div class="mw-heading mw-heading2"><h2 id="See_also">See also</h2></div>
<ul><li><a href="NT_LAN_Manager" class="mw-redirect" title="NT LAN Manager">NT LAN Manager</a></li>
<li><a href="Active_Directory" title="Active Directory">Active Directory</a></li>
<li><a href="Password_cracking" title="Password cracking">Password cracking</a></li>
<li><a href="Dictionary_attack" title="Dictionary attack">Dictionary attack</a></li>
<li><a href="Remote_Program_Load" class="mw-redirect" title="Remote Program Load">Remote Program Load</a> (RPL)</li>
<li><a href="Security_Account_Manager" title="Security Account Manager">Security Account Manager</a></li></ul>
<div class="mw-heading mw-heading2"><h2 id="Notes">Notes</h2></div>
<style data-mw-deduplicate="TemplateStyles:r1239543626">
/* start https://en.wikipedia.org/ */


.mw-parser-output .reflist{margin-bottom:0.5em;list-style-type:decimal}@media screen{.mw-parser-output .reflist{font-size:90%}}.mw-parser-output .reflist .references{font-size:100%;margin-bottom:0;list-style-type:inherit}.mw-parser-output .reflist-columns-2{column-width:30em}.mw-parser-output .reflist-columns-3{column-width:25em}.mw-parser-output .reflist-columns{margin-top:0.3em}.mw-parser-output .reflist-columns ol{margin-top:0}.mw-parser-output .reflist-columns li{page-break-inside:avoid;break-inside:avoid-column}.mw-parser-output .reflist-upper-alpha{list-style-type:upper-alpha}.mw-parser-output .reflist-upper-roman{list-style-type:upper-roman}.mw-parser-output .reflist-lower-alpha{list-style-type:lower-alpha}.mw-parser-output .reflist-lower-greek{list-style-type:lower-greek}.mw-parser-output .reflist-lower-roman{list-style-type:lower-roman}


/* end https://en.wikipedia.org/ */
</style><div class="reflist">
<div class="mw-references-wrap"><ol class="references">
<li id="cite_note-6"><span class="mw-cite-backlink"><b><a href="#cite_ref-6">^</a></b></span> <span class="reference-text">If the password is more than fourteen characters long, the LM hash cannot be computed.</span>
</li>
<li id="cite_note-9"><span class="mw-cite-backlink"><b><a href="#cite_ref-9">^</a></b></span> <span class="reference-text">The string “KGS!@#$%” could possibly mean <b>K</b>ey of <b>G</b>len and <b>S</b>teve and then the combination of <b>Shift + 12345</b>. Glen Zorn and Steve Cobb are the authors of RFC 2433 (<a href="MS-CHAP" title="MS-CHAP">Microsoft PPP CHAP Extensions</a>).</span>
</li>
</ol></div></div>
<div class="mw-heading mw-heading2"><h2 id="References">References</h2></div>
<div class="reflist">
<div class="mw-references-wrap mw-references-columns"><ol class="references">
<li id="cite_note-samba-1"><span class="mw-cite-backlink"><b><a href="#cite_ref-samba_1-0">^</a></b></span> <span class="reference-text"><style data-mw-deduplicate="TemplateStyles:r1238218222">
/* start https://en.wikipedia.org/ */


.mw-parser-output cite.citation{font-style:inherit;word-wrap:break-word}.mw-parser-output .citation q{quotes:"\"""\"""'""'"}.mw-parser-output .citation:target{background-color:rgba(0,127,255,0.133)}.mw-parser-output .id-lock-free.id-lock-free a{background:url("./mw/Lock-green.svg")right 0.1em center/9px no-repeat}.mw-parser-output .id-lock-limited.id-lock-limited a,.mw-parser-output .id-lock-registration.id-lock-registration a{background:url("./mw/Lock-gray-alt-2.svg")right 0.1em center/9px no-repeat}.mw-parser-output .id-lock-subscription.id-lock-subscription a{background:url("./mw/Lock-red-alt-2.svg")right 0.1em center/9px no-repeat}.mw-parser-output .cs1-ws-icon a{background:url("./mw/Wikisource-logo.svg")right 0.1em center/12px no-repeat}body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .id-lock-free a,body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .id-lock-limited a,body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .id-lock-registration a,body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .id-lock-subscription a,body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .cs1-ws-icon a{background-size:contain;padding:0 1em 0 0}.mw-parser-output .cs1-code{color:inherit;background:inherit;border:none;padding:inherit}.mw-parser-output .cs1-hidden-error{display:none;color:var(--color-error,#d33)}.mw-parser-output .cs1-visible-error{color:var(--color-error,#d33)}.mw-parser-output .cs1-maint{display:none;color:#085;margin-left:0.3em}.mw-parser-output .cs1-kern-left{padding-left:0.2em}.mw-parser-output .cs1-kern-right{padding-right:0.2em}.mw-parser-output .citation .mw-selflink{font-weight:inherit}@media screen{.mw-parser-output .cs1-format{font-size:95%}html.skin-theme-clientpref-night .mw-parser-output .cs1-maint{color:#18911f}}@media screen and (prefers-color-scheme:dark){html.skin-theme-clientpref-os .mw-parser-output .cs1-maint{color:#18911f}}


/* end https://en.wikipedia.org/ */
</style><cite id="CITEREFAndy_Goldstein2005" class="citation web cs1">Andy Goldstein (2005). <a rel="nofollow" class="external text" href="https://web.archive.org/web/20210207063545/http://de.openvms.org/TUD2005/02_Advanced_Server_and_Samba_Andy_Goldstein.pdf">"Samba and OpenVMS"</a> <span class="cs1-format">(PDF)</span>. <i>de.openvms.org</i>. Archived from <a rel="nofollow" class="external text" href="http://de.openvms.org/TUD2005/02_Advanced_Server_and_Samba_Andy_Goldstein.pdf">the original</a> <span class="cs1-format">(PDF)</span> on February 7, 2021<span class="reference-accessdate">. Retrieved <span class="nowrap">January 1,</span> 2021</span>.</cite></span>
</li>
<li id="cite_note-pc19891212-2"><span class="mw-cite-backlink"><b><a href="#cite_ref-pc19891212_2-0">^</a></b></span> <span class="reference-text"><cite id="CITEREFDerflerThompson1989" class="citation magazine cs1">Derfler, Frank J. Jr.; Thompson, M. Keith (December 12, 1989). <a rel="nofollow" class="external text" href="https://books.google.com/books?id=5CmkZ3THZtwC&amp;pg=PT206">"Novell's NetWare 386"</a>. <i>PC Magazine</i>. Vol.&nbsp;8, no.&nbsp;21. p.&nbsp;205<span class="reference-accessdate">. Retrieved <span class="nowrap">May 2,</span> 2025</span>.</cite></span>
</li>
<li id="cite_note-3"><span class="mw-cite-backlink"><b><a href="#cite_ref-3">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://www.os2museum.com/wp/dos-smb-client-performance/">"DOS SMB Client Performance | OS/2 Museum"</a><span class="reference-accessdate">. Retrieved <span class="nowrap">August 28,</span> 2023</span>.</cite></span>
</li>
<li id="cite_note-4"><span class="mw-cite-backlink"><b><a href="#cite_ref-4">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://learn.microsoft.com/previous-versions/tn-archive/dd277300(v=technet.10)#the-lmhash">"Chapter 3 - Operating System Installation"</a>. <i><a href="Microsoft_Docs" title="Microsoft Docs">Microsoft Docs</a></i>. March 24, 2009. The LMHash<span class="reference-accessdate">. Retrieved <span class="nowrap">October 16,</span> 2023</span>.</cite></span>
</li>
<li id="cite_note-davenport-5"><span class="mw-cite-backlink"><b><a href="#cite_ref-davenport_5-0">^</a></b></span> <span class="reference-text"><cite id="CITEREFGlass2006" class="citation web cs1">Glass, Eric (2006). <a rel="nofollow" class="external text" href="https://davenport.sourceforge.net/ntlm.html#theLmResponse">"The NTLM Authentication Protocol and Security Support Provider: The LM Response"</a><span class="reference-accessdate">. Retrieved <span class="nowrap">May 12,</span> 2015</span>.</cite></span>
</li>
<li id="cite_note-7"><span class="mw-cite-backlink"><b><a href="#cite_ref-7">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://web.archive.org/web/20150518092309/https://msdn.microsoft.com/nl-nl/goglobal/cc563921(en-us).aspx">"List of Localized MS Operating Systems"</a>. <i><a href="Microsoft_Developer_Network" title="Microsoft Developer Network">Microsoft Developer Network</a></i>. Archived from <a rel="nofollow" class="external text" href="https://msdn.microsoft.com/nl-nl/goglobal/cc563921%28en-us%29.aspx">the original</a> on May 18, 2015<span class="reference-accessdate">. Retrieved <span class="nowrap">May 12,</span> 2015</span>.</cite></span>
</li>
<li id="cite_note-KB828861-8"><span class="mw-cite-backlink">^ <a href="#cite_ref-KB828861_8-0"><sup><i><b>a</b></i></sup></a> <a href="#cite_ref-KB828861_8-1"><sup><i><b>b</b></i></sup></a></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://web.archive.org/web/20140910100521/https://support.microsoft.com/kb/828861">"Cluster service account password must be set to 15 or more characters if the NoLMHash policy is enabled"</a>. <a href="Microsoft" title="Microsoft">Microsoft</a>. October 30, 2006. Archived from <a rel="nofollow" class="external text" href="https://support.microsoft.com/kb/828861">the original</a> on September 10, 2014<span class="reference-accessdate">. Retrieved <span class="nowrap">May 12,</span> 2015</span>.</cite></span>
</li>
<li id="cite_note-SecurityWatch-10"><span class="mw-cite-backlink">^ <a href="#cite_ref-SecurityWatch_10-0"><sup><i><b>a</b></i></sup></a> <a href="#cite_ref-SecurityWatch_10-1"><sup><i><b>b</b></i></sup></a></span> <span class="reference-text"><cite id="CITEREFJesper_Johansson2016" class="citation web cs1">Jesper Johansson (August 31, 2016). <a rel="nofollow" class="external text" href="https://learn.microsoft.com/en-us/previous-versions/technet-magazine/cc160954(v=msdn.10)">"The Most Misunderstood Windows Security Setting of All Time"</a>. <i><a href="Microsoft_Docs" title="Microsoft Docs">Microsoft Docs</a></i>. Microsoft<span class="reference-accessdate">. Retrieved <span class="nowrap">October 16,</span> 2023</span>. <q>Although Windows Vista has not been released yet, it is worthwhile to point out some changes in this operating system related to these protocols. The most important change is that the LM protocol can no longer be used for inbound authentication—where Windows Vista is acting as the authentication server.</q></cite></span>
</li>
<li id="cite_note-11"><span class="mw-cite-backlink"><b><a href="#cite_ref-11">^</a></b></span> <span class="reference-text"><cite id="CITEREFJohansson2004" class="citation web cs1">Johansson, Jasper M. (June 29, 2004). <a rel="nofollow" class="external text" href="http://download.microsoft.com/download/f/4/a/f4a67fc8-c499-461d-a025-8155fb4f7a0f/Windows%20Passwords%20Master%201.5%20Handout%20-%20Jesper%20Johansson.ppt">"Windows Passwords: Everything You Need To Know"</a>. <a href="Microsoft" title="Microsoft">Microsoft</a><span class="reference-accessdate">. Retrieved <span class="nowrap">May 12,</span> 2015</span>.</cite></span>
</li>
<li id="cite_note-12"><span class="mw-cite-backlink"><b><a href="#cite_ref-12">^</a></b></span> <span class="reference-text">Rahul Kokcha</span>
</li>
<li id="cite_note-13"><span class="mw-cite-backlink"><b><a href="#cite_ref-13">^</a></b></span> <span class="reference-text"><a rel="nofollow" class="external text" href="https://www.onlinehashcrack.com/tools-benchmark-hashcat-nvidia-rtx-2070s-super.php">Benchmark Hashcat v6.1.1 on RTX 2070S (SUPER)</a>, Mode 3000 LM, accessed November 29, 2020</span>
</li>
<li id="cite_note-KB299656-14"><span class="mw-cite-backlink">^ <a href="#cite_ref-KB299656_14-0"><sup><i><b>a</b></i></sup></a> <a href="#cite_ref-KB299656_14-1"><sup><i><b>b</b></i></sup></a></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://learn.microsoft.com/en-US/troubleshoot/windows-server/windows-security/prevent-windows-store-lm-hash-password">"How to prevent Windows from storing a LAN manager hash of your password in Active Directory and local SAM databases"</a>. <i><a href="Microsoft_Docs" title="Microsoft Docs">Microsoft Docs</a></i>. December 3, 2007<span class="reference-accessdate">. Retrieved <span class="nowrap">October 16,</span> 2023</span>.</cite></span>
</li>
<li id="cite_note-15"><span class="mw-cite-backlink"><b><a href="#cite_ref-15">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://web.archive.org/web/20150519010408/https://support.microsoft.com/en-us/kb/194507">"Windows NT 4.0 Service Pack 4 Readme.txt File (40-bit)"</a>. <a href="Microsoft" title="Microsoft">Microsoft</a>. October 25, 1998. Archived from <a rel="nofollow" class="external text" href="https://support.microsoft.com/kb/194507">the original</a> on May 19, 2015<span class="reference-accessdate">. Retrieved <span class="nowrap">May 12,</span> 2015</span>.</cite></span>
</li>
<li id="cite_note-16"><span class="mw-cite-backlink"><b><a href="#cite_ref-16">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://www.samba.org/samba/history/samba-3.0.0.html">"The Samba Team announces the first official release of Samba 3.0"</a>. <a href="SAMBA" class="mw-redirect" title="SAMBA">SAMBA</a>. September 24, 2003<span class="reference-accessdate">. Retrieved <span class="nowrap">May 12,</span> 2015</span>.</cite></span>
</li>
<li id="cite_note-17"><span class="mw-cite-backlink"><b><a href="#cite_ref-17">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://jcifs.samba.org/">"The Java CIFS Client Library"</a><span class="reference-accessdate">. Retrieved <span class="nowrap">May 12,</span> 2015</span>.</cite></span>
</li>
<li id="cite_note-18"><span class="mw-cite-backlink"><b><a href="#cite_ref-18">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://www-01.ibm.com/support/knowledgecenter/ssw_aix_53/com.ibm.aix.commadmn/doc/commadmndita/smbfs_intro.htm">"AIX 5.3 Networks and communication management: Server Message Block file system"</a>. <a href="IBM" title="IBM">IBM</a>. March 15, 2010. p.&nbsp;441<span class="reference-accessdate">. Retrieved <span class="nowrap">May 12,</span> 2015</span>.</cite></span>
</li>
<li id="cite_note-19"><span class="mw-cite-backlink"><b><a href="#cite_ref-19">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://www-01.ibm.com/support/knowledgecenter/ssw_aix_71/com.ibm.aix.networkcomm/smbfs_intro.htm">"AIX 7.1 Networks and communication management: Server Message Block file system"</a>. <a href="IBM" title="IBM">IBM</a>. December 5, 2011<span class="reference-accessdate">. Retrieved <span class="nowrap">May 12,</span> 2015</span>.</cite></span>
</li>
</ol></div></div>
<div class="mw-heading mw-heading2"><h2 id="External_links">External links</h2></div>
<style data-mw-deduplicate="TemplateStyles:r1290876196">
/* start https://en.wikipedia.org/ */


.mw-parser-output .side-box{margin:4px 0;box-sizing:border-box;border:1px solid #aaa;font-size:88%;line-height:1.25em;background-color:var(--background-color-interactive-subtle,#f8f9fa);display:flow-root}.mw-parser-output .infobox .side-box{font-size:100%}.mw-parser-output .side-box-abovebelow,.mw-parser-output .side-box-text{padding:0.25em 0.9em}.mw-parser-output .side-box-image{padding:2px 0 2px 0.9em;text-align:center}.mw-parser-output .side-box-imageright{padding:2px 0.9em 2px 0;text-align:center}@media(min-width:500px){.mw-parser-output .side-box-flex{display:flex;align-items:center}.mw-parser-output .side-box-text{flex:1;min-width:0}}@media(min-width:720px){.mw-parser-output .side-box{width:238px}.mw-parser-output .side-box-right{clear:right;float:right;margin-left:1em}.mw-parser-output .side-box-left{margin-right:1em}}


/* end https://en.wikipedia.org/ */
</style><style data-mw-deduplicate="TemplateStyles:r1237033735">
/* start https://en.wikipedia.org/ */


@media print{body.ns-0 .mw-parser-output .sistersitebox{display:none!important}}@media screen{html.skin-theme-clientpref-night .mw-parser-output .sistersitebox img[src*="Wiktionary-logo-en-v2.svg"]{background-color:white}}@media screen and (prefers-color-scheme:dark){html.skin-theme-clientpref-os .mw-parser-output .sistersitebox img[src*="Wiktionary-logo-en-v2.svg"]{background-color:white}}


/* end https://en.wikipedia.org/ */
</style><div class="side-box side-box-right sistersitebox"><style data-mw-deduplicate="TemplateStyles:r1126788409">
/* start https://en.wikipedia.org/ */


.mw-parser-output .plainlist ol,.mw-parser-output .plainlist ul{line-height:inherit;list-style:none;margin:0;padding:0}.mw-parser-output .plainlist ol li,.mw-parser-output .plainlist ul li{margin-bottom:0}


/* end https://en.wikipedia.org/ */
</style>
<div class="side-box-flex">
<div class="side-box-image"><span class="noviewer" typeof="mw:File"></span></div>
<div class="side-box-text plainlist">Wikibooks has a book on the topic of: <i><b><a href="https://en.wikibooks.org/wiki/Reverse_Engineering/Cracking_Windows_XP_Passwords" class="extiw external" title="wikibooks:Reverse Engineering/Cracking Windows XP Passwords">Reverse Engineering/Cracking Windows XP Passwords</a></b></i></div></div>
</div>
<ul><li><a rel="nofollow" class="external text" href="https://web.archive.org/web/20170212195243/http://msdn.microsoft.com/en-us/library/cc237025.aspx">1.3.8.1.1 Microsoft LAN Manager</a> at the <a href="Wayback_Machine" title="Wayback Machine">Wayback Machine</a> (archived February 12, 2017)</li>
<li><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://bitsavers.org/pdf/dec/decnet/pathworks_DOS/AA-PHH1A-TK_Pathworks_for_DOS_Microsoft_LAN_Manager_Users_Guide_for_MS-DOS_1990.pdf">"Microsoft LAN Manager User's Guide for MS-DOS"</a> <span class="cs1-format">(PDF)</span> – via <a href="Bitsavers" class="mw-redirect" title="Bitsavers">Bitsavers</a>.</cite></li></ul>
<div class="navbox-styles"><style data-mw-deduplicate="TemplateStyles:r1129693374">
/* start https://en.wikipedia.org/ */


.mw-parser-output .hlist dl,.mw-parser-output .hlist ol,.mw-parser-output .hlist ul{margin:0;padding:0}.mw-parser-output .hlist dd,.mw-parser-output .hlist dt,.mw-parser-output .hlist li{margin:0;display:inline}.mw-parser-output .hlist.inline,.mw-parser-output .hlist.inline dl,.mw-parser-output .hlist.inline ol,.mw-parser-output .hlist.inline ul,.mw-parser-output .hlist dl dl,.mw-parser-output .hlist dl ol,.mw-parser-output .hlist dl ul,.mw-parser-output .hlist ol dl,.mw-parser-output .hlist ol ol,.mw-parser-output .hlist ol ul,.mw-parser-output .hlist ul dl,.mw-parser-output .hlist ul ol,.mw-parser-output .hlist ul ul{display:inline}.mw-parser-output .hlist .mw-empty-li{display:none}.mw-parser-output .hlist dt::after{content:": "}.mw-parser-output .hlist dd::after,.mw-parser-output .hlist li::after{content:" · ";font-weight:bold}.mw-parser-output .hlist dd:last-child::after,.mw-parser-output .hlist dt:last-child::after,.mw-parser-output .hlist li:last-child::after{content:none}.mw-parser-output .hlist dd dd:first-child::before,.mw-parser-output .hlist dd dt:first-child::before,.mw-parser-output .hlist dd li:first-child::before,.mw-parser-output .hlist dt dd:first-child::before,.mw-parser-output .hlist dt dt:first-child::before,.mw-parser-output .hlist dt li:first-child::before,.mw-parser-output .hlist li dd:first-child::before,.mw-parser-output .hlist li dt:first-child::before,.mw-parser-output .hlist li li:first-child::before{content:" (";font-weight:normal}.mw-parser-output .hlist dd dd:last-child::after,.mw-parser-output .hlist dd dt:last-child::after,.mw-parser-output .hlist dd li:last-child::after,.mw-parser-output .hlist dt dd:last-child::after,.mw-parser-output .hlist dt dt:last-child::after,.mw-parser-output .hlist dt li:last-child::after,.mw-parser-output .hlist li dd:last-child::after,.mw-parser-output .hlist li dt:last-child::after,.mw-parser-output .hlist li li:last-child::after{content:")";font-weight:normal}.mw-parser-output .hlist ol{counter-reset:listitem}.mw-parser-output .hlist ol>li{counter-increment:listitem}.mw-parser-output .hlist ol>li::before{content:" "counter(listitem)"\a0 "}.mw-parser-output .hlist dd ol>li:first-child::before,.mw-parser-output .hlist dt ol>li:first-child::before,.mw-parser-output .hlist li ol>li:first-child::before{content:" ("counter(listitem)"\a0 "}


/* end https://en.wikipedia.org/ */
</style><style data-mw-deduplicate="TemplateStyles:r1236075235">
/* start https://en.wikipedia.org/ */


.mw-parser-output .navbox{box-sizing:border-box;border:1px solid #a2a9b1;width:100%;clear:both;font-size:88%;text-align:center;padding:1px;margin:1em auto 0}.mw-parser-output .navbox .navbox{margin-top:0}.mw-parser-output .navbox+.navbox,.mw-parser-output .navbox+.navbox-styles+.navbox{margin-top:-1px}.mw-parser-output .navbox-inner,.mw-parser-output .navbox-subgroup{width:100%}.mw-parser-output .navbox-group,.mw-parser-output .navbox-title,.mw-parser-output .navbox-abovebelow{padding:0.25em 1em;line-height:1.5em;text-align:center}.mw-parser-output .navbox-group{white-space:nowrap;text-align:right}.mw-parser-output .navbox,.mw-parser-output .navbox-subgroup{background-color:#fdfdfd}.mw-parser-output .navbox-list{line-height:1.5em;border-color:#fdfdfd}.mw-parser-output .navbox-list-with-group{text-align:left;border-left-width:2px;border-left-style:solid}.mw-parser-output tr+tr>.navbox-abovebelow,.mw-parser-output tr+tr>.navbox-group,.mw-parser-output tr+tr>.navbox-image,.mw-parser-output tr+tr>.navbox-list{border-top:2px solid #fdfdfd}.mw-parser-output .navbox-title{background-color:#ccf}.mw-parser-output .navbox-abovebelow,.mw-parser-output .navbox-group,.mw-parser-output .navbox-subgroup .navbox-title{background-color:#ddf}.mw-parser-output .navbox-subgroup .navbox-group,.mw-parser-output .navbox-subgroup .navbox-abovebelow{background-color:#e6e6ff}.mw-parser-output .navbox-even{background-color:#f7f7f7}.mw-parser-output .navbox-odd{background-color:transparent}.mw-parser-output .navbox .hlist td dl,.mw-parser-output .navbox .hlist td ol,.mw-parser-output .navbox .hlist td ul,.mw-parser-output .navbox td.hlist dl,.mw-parser-output .navbox td.hlist ol,.mw-parser-output .navbox td.hlist ul{padding:0.125em 0}.mw-parser-output .navbox .navbar{display:block;font-size:100%}.mw-parser-output .navbox-title .navbar{float:left;text-align:left;margin-right:0.5em}body.skin--responsive .mw-parser-output .navbox-image img{max-width:none!important}@media print{body.ns-0 .mw-parser-output .navbox{display:none!important}}


/* end https://en.wikipedia.org/ */
</style></div><div role="navigation" class="navbox" aria-labelledby="Authentication330" style="padding:3px"><table class="nowraplinks hlist mw-collapsible autocollapse navbox-inner" style="border-spacing:0;background:transparent;color:inherit"><tbody><tr><th scope="col" class="navbox-title" colspan="2"><style data-mw-deduplicate="TemplateStyles:r1239400231">
/* start https://en.wikipedia.org/ */


.mw-parser-output .navbar{display:inline;font-size:88%;font-weight:normal}.mw-parser-output .navbar-collapse{float:left;text-align:left}.mw-parser-output .navbar-boxtext{word-spacing:0}.mw-parser-output .navbar ul{display:inline-block;white-space:nowrap;line-height:inherit}.mw-parser-output .navbar-brackets::before{margin-right:-0.125em;content:"[ "}.mw-parser-output .navbar-brackets::after{margin-left:-0.125em;content:" ]"}.mw-parser-output .navbar li{word-spacing:-0.125em}.mw-parser-output .navbar a>span,.mw-parser-output .navbar a>abbr{text-decoration:inherit}.mw-parser-output .navbar-mini abbr{font-variant:small-caps;border-bottom:none;text-decoration:none;cursor:inherit}.mw-parser-output .navbar-ct-full{font-size:114%;margin:0 7em}.mw-parser-output .navbar-ct-mini{font-size:114%;margin:0 4em}html.skin-theme-clientpref-night .mw-parser-output .navbar li a abbr{color:var(--color-base)!important}@media(prefers-color-scheme:dark){html.skin-theme-clientpref-os .mw-parser-output .navbar li a abbr{color:var(--color-base)!important}}@media print{.mw-parser-output .navbar{display:none!important}}


/* end https://en.wikipedia.org/ */
</style><div id="Authentication330" style="font-size:114%;margin:0 4em"><a href="Authentication" title="Authentication">Authentication</a></div></th></tr><tr><th scope="row" class="navbox-group" style="width:1%">Authentication<br>APIs</th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="BSD_Authentication" title="BSD Authentication">BSD Authentication</a> (BSD Auth)</li>
<li><a href="EAuthentication" class="mw-redirect" title="EAuthentication">eAuthentication</a> (eAuth)</li>
<li><a href="Generic_Security_Services_Application_Program_Interface" class="mw-redirect" title="Generic Security Services Application Program Interface">Generic Security Services API</a> (GSSAPI)</li>
<li><a href="Java_Authentication_and_Authorization_Service" title="Java Authentication and Authorization Service">Java Authentication and Authorization Service</a> (JAAS)</li>
<li><a href="Pluggable_authentication_module" class="mw-redirect" title="Pluggable authentication module">Pluggable Authentication Modules</a> (PAM)</li>
<li><a href="Simple_Authentication_and_Security_Layer" title="Simple Authentication and Security Layer">Simple Authentication and Security Layer</a> (SASL)</li>
<li><a href="Security_Support_Provider_Interface" title="Security Support Provider Interface">Security Support Provider Interface</a> (SSPI)</li>
<li><a href="XUDA" title="XUDA">XCert Universal Database API</a> (XUDA)</li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%"><a href="Authentication_protocol" title="Authentication protocol">Authentication<br>protocols</a></th><td class="navbox-list-with-group navbox-list navbox-even" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="ACF2" title="ACF2">ACF2</a></li>
<li><a href="Authentication_and_Key_Agreement_(protocol)" class="mw-redirect" title="Authentication and Key Agreement (protocol)">Authentication and Key Agreement</a> (AKA)</li>
<li><a href="CAVE-based_authentication" title="CAVE-based authentication">CAVE-based authentication</a></li>
<li><a href="Challenge-Handshake_Authentication_Protocol" title="Challenge-Handshake Authentication Protocol">Challenge-Handshake Authentication Protocol</a> (CHAP)
<ul><li><a href="MS-CHAP" title="MS-CHAP">MS-CHAP</a></li></ul></li>
<li><a href="Central_Authentication_Service" title="Central Authentication Service">Central Authentication Service</a> (CAS)</li>
<li><a href="CRAM-MD5" title="CRAM-MD5">CRAM-MD5</a></li>
<li><a href="Diameter_(protocol)" title="Diameter (protocol)">Diameter</a></li>
<li><a href="Extensible_Authentication_Protocol" title="Extensible Authentication Protocol">Extensible Authentication Protocol</a> (EAP)</li>
<li><a href="Host_Identity_Protocol" title="Host Identity Protocol">Host Identity Protocol</a> (HIP)</li>
<li><a href="IndieAuth" title="IndieAuth">IndieAuth</a></li>
<li><a href="Kerberos_(protocol)" title="Kerberos (protocol)">Kerberos</a></li>

<li><a href="NT_LAN_Manager" class="mw-redirect" title="NT LAN Manager">NT LAN Manager</a> (NTLM)</li>
<li><a href="OAuth" title="OAuth">OAuth</a></li>
<li><a href="OpenID" title="OpenID">OpenID</a></li>
<li><a href="OpenID_Connect" class="mw-redirect" title="OpenID Connect">OpenID Connect</a> (OIDC)</li>
<li><a href="Password-authenticated_key_agreement" title="Password-authenticated key agreement">Password-authenticated key agreement</a> protocols</li>
<li><a href="Password_Authentication_Protocol" title="Password Authentication Protocol">Password Authentication Protocol</a> (PAP)</li>
<li><a href="Protected_Extensible_Authentication_Protocol" title="Protected Extensible Authentication Protocol">Protected Extensible Authentication Protocol</a> (PEAP)</li>
<li><a href="RADIUS" title="RADIUS">Remote Access Dial In User Service</a> (RADIUS)</li>
<li><a href="Resource_Access_Control_Facility" title="Resource Access Control Facility">Resource Access Control Facility</a> (RACF)</li>
<li><a href="Secure_Remote_Password_protocol" title="Secure Remote Password protocol">Secure Remote Password protocol</a> (SRP)</li>
<li><a href="TACACS" title="TACACS">TACACS</a></li>
<li><a href="Woo%E2%80%93Lam" title="Woo–Lam">Woo–Lam</a></li></ul>
</div></td></tr><tr><td class="navbox-abovebelow" colspan="2"><div>
<ul><li><span class="noviewer" typeof="mw:File"><span title="Category"></span></span> Category</li>
<li><span class="noviewer" typeof="mw:File"><span title="Commons page"></span></span> <a href="https://commons.wikimedia.org/wiki/Category:Authentication" class="extiw external" title="commons:Category:Authentication">Commons</a></li></ul>
</div></td></tr></tbody></table></div>
<div class="navbox-styles"></div><div role="navigation" class="navbox" aria-labelledby="Network_operating_systems_(NOS)99" style="padding:3px"><table class="nowraplinks hlist mw-collapsible autocollapse navbox-inner" style="border-spacing:0;background:transparent;color:inherit"><tbody><tr><th scope="col" class="navbox-title" colspan="2"><div id="Network_operating_systems_(NOS)99" style="font-size:114%;margin:0 4em"><a href="Network_operating_system" title="Network operating system">Network operating systems</a> (NOS)</div></th></tr><tr><th scope="row" class="navbox-group" style="width:1%">Current</th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="AlliedWare_Plus" title="AlliedWare Plus">AlliedWare Plus</a></li>
<li><a href="Cisco_IOS" title="Cisco IOS">Cisco IOS</a></li>
<li><a href="Cisco_NX-OS" title="Cisco NX-OS">Cisco NX-OS</a></li>
<li><a href="Dell_Networking_Operating_System" title="Dell Networking Operating System">Dell Networking Operating System</a></li>
<li><a href="ExtremeXOS" title="ExtremeXOS">ExtremeXOS</a></li>
<li><a href="Junos_OS" title="Junos OS">Junos OS</a></li>
<li><a href="OpenWrt" title="OpenWrt">OpenWrt</a></li>
<li><a href="PfSense" title="PfSense">pfSense</a></li>
<li><a href="ScreenOS" title="ScreenOS">ScreenOS</a></li>
<li><a href="SONiC_(operating_system)" title="SONiC (operating system)">SONiC</a></li>
<li><a href="VyOS" title="VyOS">VyOS</a></li>
<li><a href="ZyNOS" title="ZyNOS">ZyNOS</a></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Historic</th><td class="navbox-list-with-group navbox-list navbox-even" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="3%2BShare" title="3+Share">3+Share</a></li>
<li><a href="Banyan_VINES" title="Banyan VINES">Banyan VINES</a></li>
<li><a href="Cumulus_Networks#Cumulus_Linux" title="Cumulus Networks">Cumulus Linux</a></li>

<li><a href="MS-Net" title="MS-Net">MS-Net</a></li>
<li><a href="NetWare" title="NetWare">NetWare</a></li>
<li><a href="Novell_S-Net" title="Novell S-Net">Novell S-Net</a></li></ul>
</div></td></tr><tr><td class="navbox-abovebelow" colspan="2"><div>
<ul><li>Category</li></ul>
</div></td></tr></tbody></table></div>
<div class="navbox-styles"></div><div role="navigation" class="navbox" aria-labelledby="Operating_systems_by_Microsoft340" style="padding:3px"><table class="nowraplinks hlist mw-collapsible autocollapse navbox-inner" style="border-spacing:0;background:transparent;color:inherit"><tbody><tr><th scope="col" class="navbox-title" colspan="2"><div id="Operating_systems_by_Microsoft340" style="font-size:114%;margin:0 4em">Operating systems by Microsoft</div></th></tr><tr><th scope="row" class="navbox-group" style="width:1%">Desktop / Server</th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Microsoft_Windows" title="Microsoft Windows">Microsoft Windows</a>
<ul><li><a href="Windows_1.0" title="Windows 1.0">1.0</a></li>
<li><a href="Windows_2.0" title="Windows 2.0">2.0</a></li>
<li><a href="Windows_2.1" title="Windows 2.1">2.1</a></li>
<li><a href="Windows_3.0" title="Windows 3.0">3.0</a></li>
<li><a href="Windows_3.1" title="Windows 3.1">3.1</a></li>
<li><a href="Windows_9x" title="Windows 9x">9x</a></li>
<li><a href="Windows_NT" title="Windows NT">NT</a></li></ul></li>
<li><a href="MS-DOS" title="MS-DOS">MS-DOS</a>
<ul><li><a href="MSX-DOS" title="MSX-DOS">MSX-DOS</a></li>
<li><a href="MS-DOS_4.0_(multitasking)" title="MS-DOS 4.0 (multitasking)">Multitasking MS-DOS 4.0/4.1</a></li>
<li><a href="MS-DOS_7" title="MS-DOS 7">MS-DOS 7</a></li>
<li><a href="DOS/V" title="DOS/V">DOS/V</a></li>
<li><a href="Z-DOS" title="Z-DOS">Z-DOS</a></li></ul></li>
<li><a href="OS/2" title="OS/2">OS/2</a></li>
<li><a href="Xenix" title="Xenix">Xenix</a></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Mobile</th><td class="navbox-list-with-group navbox-list navbox-even" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Nokia_Asha_platform" title="Nokia Asha platform">Nokia Asha platform</a></li>
<li><a href="Nokia_X_platform" title="Nokia X platform">Nokia X platform</a></li>
<li><a href="Microsoft_Kin" title="Microsoft Kin">KIN OS</a></li>
<li><a href="Windows_Mobile" title="Windows Mobile">Windows Mobile</a></li>
<li><a href="Windows_Phone" title="Windows Phone">Windows Phone</a></li>
<li><a href="Zune#Firmware" title="Zune">Zune</a></li>
<li><a href="Windows_10_Mobile" title="Windows 10 Mobile">Windows 10 Mobile</a></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Embedded / IoT</th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="ThreadX" title="ThreadX">Azure RTOS ThreadX</a></li>
<li><a href="Azure_Sphere" title="Azure Sphere">Azure Sphere</a></li>
<li><a href="Modular_Windows" class="mw-redirect" title="Modular Windows">Modular Windows</a></li>
<li><a href="Windows_Embedded_Automotive" title="Windows Embedded Automotive">Windows Embedded Automotive</a></li>
<li><a href="Windows_Embedded_Compact" class="mw-redirect" title="Windows Embedded Compact">Windows Embedded Compact</a></li>
<li><a href="Windows_Embedded_Industry" title="Windows Embedded Industry">Windows Embedded Industry</a></li>
<li><a href="Windows_IoT" title="Windows IoT">Windows IoT</a></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Network</th><td class="navbox-list-with-group navbox-list navbox-even" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="MS-Net" title="MS-Net">MS-Net</a></li>

<li><a href="SONiC_(operating_system)" title="SONiC (operating system)">SONiC</a></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Others</th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Azure_Linux" title="Azure Linux">Azure Linux</a></li>
<li><a href="Barrelfish_(operating_system)" title="Barrelfish (operating system)">Barrelfish</a></li>
<li><a href="Cairo_(operating_system)" title="Cairo (operating system)">Cairo</a></li>
<li><a href="HomeOS" title="HomeOS">HomeOS</a></li>
<li><a href="Midori_(operating_system)" title="Midori (operating system)">Midori</a></li>
<li><a href="Singularity_(operating_system)" title="Singularity (operating system)">Singularity</a></li>
<li><a href="Microsoft_Venus" title="Microsoft Venus">Venus</a></li>
<li><a href="Verve_(operating_system)" title="Verve (operating system)">Verve</a></li>
<li><a href="Xbox_system_software" title="Xbox system software">Xbox system software</a></li></ul>
</div></td></tr><tr><td class="navbox-abovebelow" colspan="2"><div>
<ul><li><span class="noviewer" typeof="mw:File"><span title="Category"></span></span> Category</li>
<li><span class="noviewer" typeof="mw:File"><span title="List-Class article"></span></span> <a href="List_of_Microsoft_operating_systems" title="List of Microsoft operating systems">List</a></li></ul>
</div></td></tr></tbody></table></div></div><!--htdig_noindex--><div><div class="zim-footer">
This article is issued from <a class="external text" title="Last edited on 2025-07-06" href="https://en.wikipedia.org/wiki/?title=LAN_Manager&amp;oldid=1299162781">Wikipedia</a>. The text is available under <a class="external text" href="https://creativecommons.org/licenses/by-sa/4.0/deed.en">Creative Commons Attribution-Share Alike 4.0</a> unless otherwise noted. Additional terms may apply for the media files.
</div>
</div><!--/htdig_noindex--></div>
</div>
</main>
</div>
</div>
</div>

</body></html>