Windows Authentication - NTLMv2 (deprecated)
This authentication method, which uses NTLMv2, is not recommended for security reasons.
Caution
Customers using Single Sign-on through Windows to authenticate to Host Access Management and Security Server (MSS) are subject to the Netlogon Elevation of Privilege Vulnerability (CVE 2020-1472).
For details, see Knowledge Base article 7024851.
To use Windows Authentication - NTLMv2:
-
In Configure Settings - Authentication & Authorization, click Windows Authentication - NTLMv2 (deprecated).
-
Select your authorization method:
- Allow authenticated users to access all published sessions
- Use LDAP to restrict access to session
Note
The same server will be used for Windows (Active Directory) authentication and LDAP authorization.
-
Click +ADD and proceed according to your selected authorization method.
-
If you are not using LDAP, continue with the steps to Configure Windows Authentication - NTLMv2 (without LDAP)
-
If you are using LDAP to restrict access, continue with Use LDAP to restrict access to Single Sign-on sessions.
-