User Management
1089
SonicOS 5.8.1 Administrator Guide
To configure a Windows 7 or Vista machine to use NTLMv2 Session Security, perform the
following steps:
Step 1 To open Windows Group Policy, open the Control Panel and select Administrative Tools.
Step 2 Select Local Security Policy to open the Local Security Policy window.
Step 3 Expand Local Policies and click on Security Options.
Step 4 Edit the Network Security: LAN Manager authentication level setting and select one of the
following:
• Send NTLM response only
• Send LM & NTLM - use NTLMv2 session security if negotiated
Step 5 To prevent the above setting from enabling NTLM more generally, do one or both of the
following:
• Set the Network Security: Restrict NTLM: NTLM authentication in this domain to Deny
all.
• Set the Network Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to
Deny all.
Then, do one or both of the following:
• Add the SonicWALL appliance domain name or IP address in the Network Security:
Restrict NTLM: Add remote server exceptions for NTLM authentication setting.
• Add the SonicWALL appliance domain name or IP address in the Network Security:
Restrict NTLM: Add server exceptions in this domain setting.