To prevent domain controllers from requiring SMB signing
- Open Active Directory Users and Computers.
- In the console tree, right-click Domain Controllers, click Properties, and then click the Group Policy tab.
- Click Default Domain Controllers Policy, and then click Edit.
- Under Security Options right-click Microsoft network server: Digitally sign communications (always), click Properties, and then click Disabled.
Where?
- Computer Configuration
- Windows Settings
- Security Settings
- Local Policies
- Security Options
Caution
- By disabling this security setting, you expose all domain controller communications to . Therefore, it is highly recommended that you upgrade your clients rather than disable this security setting. The Active Directory client, which is required for Windows 95 clients to perform signing, can be obtained from the \clients\win9x subdirectory of the Windows 2000 Server CD.
Related Topics