gptkbp:instanceOf
|
Windows service
|
gptkbp:category
|
Authentication service
|
gptkbp:defaultStartupType
|
Manual
|
gptkbp:developedBy
|
gptkb:Microsoft
|
gptkbp:documentation
|
https://docs.microsoft.com/en-us/windows-server/security/windows-authentication/credentials-processes-in-windows-authentication
|
gptkbp:executableName
|
netlogon.dll
|
gptkbp:function
|
maintains secure channel between domain controllers and computers
authenticates users and services in domain environments
|
gptkbp:homeport
|
TCP 139
TCP 445
UDP 138
|
https://www.w3.org/2000/01/rdf-schema#label
|
Netlogon service
|
gptkbp:introducedIn
|
gptkb:Windows_NT
|
gptkbp:operatingSystem
|
gptkb:Microsoft_Windows
|
gptkbp:relatedTo
|
gptkb:Kerberos
gptkb:Active_Directory
gptkb:NTLM
|
gptkbp:requires
|
Active Directory domain logon
|
gptkbp:runsOn
|
gptkb:Local_System_account
|
gptkbp:service
|
gptkb:Netlogon
|
gptkbp:supportsProtocol
|
gptkb:Remote_Procedure_Call_(RPC)
gptkb:Netlogon_Remote_Protocol_(MS-NRPC)
|
gptkbp:usedBy
|
Workstations
Domain controllers
Member servers
|
gptkbp:vulnerableTo
|
gptkb:Zerologon_(CVE-2020-1472)
|
gptkbp:bfsParent
|
gptkb:Local_Security_Authority
|
gptkbp:bfsLayer
|
6
|