Menu

Search

GlobalSCAPE Knowledge Base


How does EFT Server’s NTLM and AD Authentication Manager Authenticate against the Directory Server?


GlobalSCAPE 5
EFT Express (SMB) & Enterprise

THE INFORMATION IN THIS ARTICLE APPLIES TO:

  • EFT Server (All Versions)

QUESTION

How does EFT Server’s NTLM and AD authentication manager authenticate against the directory server?

ANSWER

EFT Server invokes "LogonUser()" to authenticate against the specific domain.

(Ref: http://msdn2.microsoft.com/en-us/library/aa378184.aspx)

EFT Server supplies a value of "LOGON32_PROVIDER_DEFAULT," meaning that the Server uses the negotiated provider that the EFT Server computer has determined appropriate based upon its place in the domain hierarchy. It is up to the domain controller to dictate the security provider policy.

The core difference between EFT Server's AD and NTLM providers is the way in which EFT Server queries the control to obtain a list of users, not how it authenticates.

So "NTLM" is an older version of querying users, using the "Network Management Functions; while "AD" uses ADSI -- Active Directory Services Interface.


Also In This Category


On a scale of 1-5, please rate the helpfulness of this article


Not Helpful
Very Helpful
Optionally provide private feedback to help us improve this article...

Thank you for your feedback!


Comments require login or registration.

Details
Last Modified: 3 Months Ago
Last Modified By: kmarsh
Type: FAQ
Article not rated yet.
Article has been viewed 12K times.
Options
Find Similar