Which encryption algorithm is used during the transformation step in LANMAN/NTLMv1 challenge/response?

Study for the SANS560 GIAC Penetration Tester (GPEN) Test. Study with flashcards and multiple choice questions, each question has hints and explanations. Get ready for your exam!

Multiple Choice

Which encryption algorithm is used during the transformation step in LANMAN/NTLMv1 challenge/response?

Explanation:
Challenge/response in LANMAN/NTLMv1 relies on DES to transform the server’s challenge using keys derived from the user’s password. The password is converted into one or more 56-bit DES keys, and the 8-byte challenge is encrypted with DES to produce the response. This choice fits the era and design of these protocols; AES, 3DES, or RC4 aren’t used in this transformation step for LANMAN/NTLMv1.

Challenge/response in LANMAN/NTLMv1 relies on DES to transform the server’s challenge using keys derived from the user’s password. The password is converted into one or more 56-bit DES keys, and the 8-byte challenge is encrypted with DES to produce the response. This choice fits the era and design of these protocols; AES, 3DES, or RC4 aren’t used in this transformation step for LANMAN/NTLMv1.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy