Microsoft begins removing NTLM on Windows 11 24H2, Server 2025 already

Windows 11 24h2 image

Again in October of 2023, Microsoft expressed its want to disable NTLM (New Technology LAN Manager) authentication. With the discount in utilization of the NTLM protocol, the corporate ultimately needed to disable it. Following that, in June earlier this yr, Microsoft confirmed that it was deprecating NTML past Windows 11 24H2 and Windows Server 2025 and thus, the function would not be accessible in future Home windows shopper and server variations.

Nevertheless, it seems to be like the corporate is now in a little bit of a rush because it has already begun eradicating NTLM on Home windows 11 24H2 and Home windows Server 2025. This week, it introduced that NTLMv1 has been faraway from the aforementioned Home windows editions.

Microsoft has up to date the notification on its deprecated options web page which now says:

All variations of NTLM, together with LANMAN, NTLMv1, and NTLMv2, are not underneath lively function growth and are deprecated. Use of NTLM will proceed to work within the subsequent launch of Home windows Server and the subsequent annual launch of Home windows. Calls to NTLM needs to be changed by calls to Negotiate, which is able to attempt to authenticate with Kerberos and solely fall again to NTLM when obligatory.

[Update – November 2024]: NTLMv1 is eliminated beginning in Home windows 11, model 24H2 and Home windows Server 20205[sic].

The corporate has additionally knowledgeable about it on its eliminated options web page:

NTLMv1 is eliminated beginning in Home windows 11, model 24H2 and Home windows Server 2025.

NTLM has proven how weak it’s in fashionable occasions and a latest instance is 0patch issuing an unofficial micro-patch for such a safety flaw.

Other than NTLMv1, one other safety function has additionally been eliminated on Home windows 11 24H2. First announced back in 2022, the corporate has confirmed that it has now eliminated Home windows Data Safety (WIP) or enterprise knowledge safety (EDP). The function was meant to guard towards unintentional knowledge leaks. Microsoft writes:

Home windows Data Safety is eliminated beginning in Home windows 11, model 24H2.

You’ll find the listing of eliminated options here on Microsoft’s official web site.

Sensi Tech Hub
Logo