I am about disabling NTLM in our domain and switched all logging options on to get any services still using NTLM.

It seems that PRTG is using NTLM only for WMI sensors, I found this thread about it. The mentioned thread is about 3 years old, so can you tell me if NTLM is still the default authentication type or can we change it to Kerberos right now?


Article Comments

Nope, cannot be changed. Sorry :/


Kind regards,
Stephan Linke, Tech Support Team


Jul, 2018 - Permalink

Can I at least disable NTLMv1 or is that also needed?


Jul, 2018 - Permalink

Same goes for that I'm afraid :( The only other way would be to switch to SNMP based monitoring, using SNMP Informant as it supports SNMPv3 (contrary to the native Windows SNMP implementation, only supporting v2).


Kind regards,
Stephan Linke, Tech Support Teams


Jul, 2018 - Permalink

Based on this thread, we've got about 5 years of your users asking to remove NTLMv1 for security purposes. Has this been accomplished, or is it at least on some sort of roadmap with an estimated completion date?


May, 2020 - Permalink

We actually have very little requests in that regard, but rest assured, if it would be easy, we would have done it quite some time ago. We currently have a lot of things on our roadmap, but I'll have our Product Managers investigate on this.


May, 2020 - Permalink

Any change of thoughts after security warning of Microsoft again to disable NTLM?

https://www.techrepublic.com/article/microsoft-warns-of-credential-stealing-ntlm-relay-attacks-against-windows-domain-controllers/?ftag=TREe331754&bhid=28100818002355349693762903605528&mid=13452901&cid=2047783594


Jul, 2021 - Permalink

We're currently checking out our options here ;) Please bear with us.


Jul, 2021 - Permalink

is there really still no solution to get WMI with kerberos working?


Mar, 2022 - Permalink

Please up-vote this one: https://helpdesk.paessler.com/en/support/solutions/articles/89790-open:-feature-request:-support-kerberos-authentication-for-wmi-sensors


Mar, 2022 - Permalink