I am trying to find specific information about how NT 4.0 password security works. I am trying to create password policies and need to determine the proper password length. I remember reading(don't remember where) that NT breaks the password into two pieces, encrypts it, and then sends it on its merry way. I want to make sure that my passwork length is longth enough to ensure that the second encrypted piece is not full of nulls. Could someone please provide this information, or preferably, a good link to this information?
Thanks in advance...
Thanks in advance...