Link to home
Start Free TrialLog in
Avatar of kdschool
kdschool

asked on

Does Windows Server 2003 store passwords in a salted has format?

I am running a windows server 2003 stand alone server. Not connected to active directory.  I need to know if when I create a local luser account and password does it do the following automatically or can I do it this way?

Passwords must be stored in a salted hash format. The salt used must be unique to each user. Approved hashing algorithms include those with a minimum strength of 256 bits, e.g. SHA-256.
ASKER CERTIFIED SOLUTION
Avatar of flyingsky
flyingsky

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of kdschool
kdschool

ASKER

I am using NT passwords.  Would you argue that these are as strong as using salting?  If salting is not an option for windows NT then maybe they are refering to another platform.  I just want to get enough valid informatoin so iif they ask me why I can respond appropriately.  Thanks.
I found a really good article on this and windows. Thanks for your direction