After a security audit, you are instructed to harden a Samba member server so that only Kerberos tickets are accepted and every form of NTLM (including NTLMv2) is refused. Which single line added to the [global] section of smb.conf meets this requirement?
The ntlm auth parameter controls whether the server will process NTLM password exchanges at all. Setting it to disabled turns off NTLMv1, NTLMv2, and LANMAN, forcing clients to use Kerberos or LDAP simple bind instead. Setting it to ntlmv2-only (or the alias no) still permits NTLMv2, client NTLMv2 auth affects only outbound client connections, and lanman auth = no blocks only the older LANMAN hashes. Therefore, the only directive that completely eliminates NTLM on the server side is ntlm auth = disabled.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is NTLM and how does it differ from Kerberos?
Open an interactive chat with Bash
What is the function of the smb.conf file in Samba?
Open an interactive chat with Bash
Why does disabling NTLM improve server security?
Open an interactive chat with Bash
CompTIA Linux+ XK0-006 (V8)
Security
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .