A city assessment finds printers and servers that accept NTLM authentication without required signing. How should this configuration class be framed?
Select an answer to reveal the explanation.
Short Explanation
NTLM without signing is like accepting a handed-off badge without checking the face. That gap is the classic setup for relay-shaped problems. Flag the config class; you do not need a lab walkthrough to make the point.
Full Explanation
Hosts that accept NTLM and lack signing protections are associated with credential-relay risk classes in Windows environments. Reporting the combination as a hardening gap helps defenders prioritize signing and authentication controls. The observation does not prove relays are impossible elsewhere, nor does it relate to smart-card replacement myths. Conceptual framing without exploit steps is appropriate for practice-test judgment items.