WindowsClientCredential.AllowNtlm 屬性
定義
重要
部分資訊涉及發行前產品,在發行之前可能會有大幅修改。 Microsoft 對此處提供的資訊,不做任何明確或隱含的瑕疵擔保。
警告
This property is deprecated and is maintained for backward compatibility only. The local machine policy will be used to determine if NTLM should be used.
取得或設定一個值,指示是否應允許 NTLM 認證作為 Windows SSPI 協商認證。
public:
property bool AllowNtlm { bool get(); void set(bool value); };
public bool AllowNtlm { get; set; }
[System.Obsolete("This property is deprecated and is maintained for backward compatibility only. The local machine policy will be used to determine if NTLM should be used.")]
public bool AllowNtlm { get; set; }
member this.AllowNtlm : bool with get, set
[<System.Obsolete("This property is deprecated and is maintained for backward compatibility only. The local machine policy will be used to determine if NTLM should be used.")>]
member this.AllowNtlm : bool with get, set
Public Property AllowNtlm As Boolean
屬性值
true 若應允許 NTLM 認證,則Windows SSPI 協商認證,否則false。 預設值為 true。
- 屬性
備註
將此屬性 true 設為 後,若無法使用 Kerberos,認證可降級為 NTLM。
將此屬性設為 會 false 使 Windows 通訊基金會(WCF)在使用 NTLM 時盡力拋出例外。 請注意,將此屬性設定為 false ,可能無法防止NTLM認證透過網路傳送。
某些部署如工作群組與本地帳號需要 NTLM 認證。 在此類部署中將此標誌設為 會導致 false 使用 WCF 時驗證失敗。 在需要相互驗證的部署(僅 Kerberos 支援)中,將此旗標設為 false。
NTLM(Windows NT LAN Manager)是一種用於網路上的認證協定,包括運行 Windows NT 作業系統的系統,以及獨立系統。
Microsoft Kerberos 安全套件為網路系統提供比 NTLM 更高的安全性。 雖然 Microsoft Kerberos 是首選協定,但 NTLM 仍被支援,且若網路包含運行 Windows NT 4.0 及更早版本的系統,且在獨立系統上必須使用。