Windows 2008r2 NTLM authentication for RDP

Hi,

Is there anyway to setup RDP SSO to authenticate with NTLMv2 instead of kerberos? In what situation is the user's credentials validated using NTLM vs kerberos?

Thanks.

June 29th, 2015 12:59am

Hi,

Is there anyway to setup RDP SSO to authenticate with NTLMv2 instead of kerberos?

If the server you are connecting to cannot be authenticated via Kerberos or SSL certificate, Single Sign-On will not work. You can circumvent this restriction by enabling "Allow Default Credentials with NTLM-only Server Authentication" policy, which is less secure. (NTLM-only Server Authentication is less secure compared to using Certificates or Kerberos.), quoted from this article below:

How to enable Single Sign-On for my Terminal Server connections

http://blogs.msdn.com/b/rds/archive/2007/04/19/how-to-enable-single-sign-on-for-my-terminal-server-connections.aspx

In what situation is the user's credentials validated using NTLM vs kerberos?

When users are members of domain, during their logon process, Kerberos protocol is used; if Kerberos authentication fails, Windows System falls back to NTLM to authenticate users.

Best Regards,

Amy

Free Windows Admin Tool Kit Click here and download it now
June 30th, 2015 11:10pm

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics