Policy overview

Key metadata and intent for this policy.

ClassComputer
CategorySystem > Net Logon
Supported onAt least Windows 11 Version 24H2

Supported OS tags: Windows11

This policy setting configures whether the domain controllers to which this setting is applied will log the new, enhanced domain-wide NTLM logs. These logs contain more information about NTLM authentication on a domain-wide level, including NTLMv1 usage. If enabled, domain controllers will log the new domain-wide NTLM logs. If disabled, domain controllers will not log the new domain-wide NTLM logs. If not configured, domain controllers will default to logging the new domain-wide NTLM logs. More information is available at aka.ms/ntlmlogandblock.

Internal name
Netlogon_EnhancedDomainNtlmLogs
Policy ID
92fa63380af3
Elements
0

Registry values

How enabled and disabled states update the registry.

Registry locationTypeEnabled valueDisabled value
HKLM\Software\Policies\Microsoft\Netlogon\Parameters\EnableEnhancedDomainNtlmLogsREG_DWORD
1
0

Policy elements

Inputs and configuration options exposed by this policy.

This policy has no additional user input fields.

Other policies in this category

Explore related policies at the same level.

View all policies in this category