NTLMSSP (
NT LAN Manager
In a Windows network, NT (New Technology) LAN Manager (NTLM) is a suite of Microsoft security protocols intended to provide authentication, integrity, and confidentiality to users. NTLM is the successor to the authentication protocol in Microsoft L ...
(NTLM)
Security Support Provider) is a binary messaging protocol used by the Microsoft
Security Support Provider Interface (SSPI) to facilitate NTLM challenge-response authentication and to negotiate integrity and confidentiality options. NTLMSSP is used wherever
SSPI
Security Support Provider Interface (SSPI) is a component of Windows API that performs security-related operations such as authentication.
SSPI functions as a common interface to several Security Support Providers (SSPs): A Security Support Provid ...
authentication is used including
Server Message Block / CIFS extended security authentication,
HTTP Negotiate authentication (e.g.
IIS with
IWA turned on) and
MSRPC services.
The NTLMSSP and NTLM challenge-response protocol have been documented in Microsoft's Open Protocol Specification.
[MS-NLMP - NT LAN MANAGER (NTLM) Authentication Protocol Specification]
References
{{Compu-network-stub
Microsoft Windows security technology
Computer access control protocols