You are on page 1of 474

Level,Date and Time,Source,Event ID,Task Category

Information,10/20/2020 10:05:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM


client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/20/2020 7:48:44 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.point.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 16428
Name of client process: C:\Program Files (x86)\Microsoft
Office\root\Office16\OUTLOOK.EXE
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.point.amat.com if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.point.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.point.amat.com as an exception
to use NTLM authentication."
Information,10/20/2020 12:20:55 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.point.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 16428
Name of client process: C:\Program Files (x86)\Microsoft
Office\root\Office16\OUTLOOK.EXE
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.point.amat.com if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.point.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.point.amat.com as an exception
to use NTLM authentication."
Information,10/20/2020 12:08:24 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/self-repair.mozilla.org
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 7608
Name of client process: C:\Users\BViswanathan154242\OneDrive - Applied
Materials\Backup\MyDocs\FirefoxPortableESR\App\Firefox64\firefox.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/self-repair.mozilla.org if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/self-repair.mozilla.org to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/self-repair.mozilla.org as an exception
to use NTLM authentication."
Information,10/20/2020 12:08:24 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/safebrowsing.google.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 7608
Name of client process: C:\Users\BViswanathan154242\OneDrive - Applied
Materials\Backup\MyDocs\FirefoxPortableESR\App\Firefox64\firefox.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/safebrowsing.google.com if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/safebrowsing.google.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/safebrowsing.google.com as an exception
to use NTLM authentication."
Information,10/19/2020 6:08:38 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/safebrowsing.google.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 22716
Name of client process: C:\Users\BViswanathan154242\OneDrive - Applied
Materials\Backup\MyDocs\FirefoxPortableESR\App\Firefox64\firefox.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/safebrowsing.google.com if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/safebrowsing.google.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/safebrowsing.google.com as an exception
to use NTLM authentication."
Information,10/19/2020 5:48:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/www.aol.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 22716
Name of client process: C:\Users\BViswanathan154242\OneDrive - Applied
Materials\Backup\MyDocs\FirefoxPortableESR\App\Firefox64\firefox.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/www.aol.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/www.aol.com to accept NTLM authentication
requests from this computer, set the security policy Network Security: Restrict
NTLM: Outgoing NTLM traffic to remote servers to Deny all, and then set the
security policy Network Security: Restrict NTLM: Add remote server exceptions and
list the target server HTTP/www.aol.com as an exception to use NTLM
authentication."
Information,10/19/2020 5:21:21 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/www.aol.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 22716
Name of client process: C:\Users\BViswanathan154242\OneDrive - Applied
Materials\Backup\MyDocs\FirefoxPortableESR\App\Firefox64\firefox.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/www.aol.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/www.aol.com to accept NTLM authentication
requests from this computer, set the security policy Network Security: Restrict
NTLM: Outgoing NTLM traffic to remote servers to Deny all, and then set the
security policy Network Security: Restrict NTLM: Add remote server exceptions and
list the target server HTTP/www.aol.com as an exception to use NTLM
authentication."
Information,10/19/2020 4:43:14 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/19/2020 4:01:54 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/detectportal.firefox.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 17996
Name of client process: C:\Users\BViswanathan154242\OneDrive - Applied
Materials\Backup\MyDocs\FirefoxPortableESR\App\Firefox64\firefox.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/detectportal.firefox.com if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/detectportal.firefox.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/detectportal.firefox.com as an exception
to use NTLM authentication."
Information,10/19/2020 4:01:53 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/tiles.services.mozilla.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 17996
Name of client process: C:\Users\BViswanathan154242\OneDrive - Applied
Materials\Backup\MyDocs\FirefoxPortableESR\App\Firefox64\firefox.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/tiles.services.mozilla.com if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/tiles.services.mozilla.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/tiles.services.mozilla.com as an
exception to use NTLM authentication."
Information,10/19/2020 4:01:53 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/location.services.mozilla.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 17996
Name of client process: C:\Users\BViswanathan154242\OneDrive - Applied
Materials\Backup\MyDocs\FirefoxPortableESR\App\Firefox64\firefox.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/location.services.mozilla.com if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/location.services.mozilla.com to accept


NTLM authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/location.services.mozilla.com as an
exception to use NTLM authentication."
Information,10/18/2020 9:49:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/18/2020 9:29:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/18/2020 9:09:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/18/2020 8:52:50 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/18/2020 8:34:08 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/18/2020 8:12:33 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/18/2020 7:23:38 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/18/2020 6:41:33 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/18/2020 6:41:33 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/18/2020 6:41:33 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/18/2020 6:41:33 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/18/2020 5:35:01 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/18/2020 4:11:26 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/18/2020 3:20:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/18/2020 3:20:28 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/18/2020 3:15:28 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/18/2020 3:10:28 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/18/2020 3:05:28 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/18/2020 3:00:30 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/18/2020 2:55:27 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/18/2020 2:55:25 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/18/2020 2:55:25 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 3:05:31 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 3:00:31 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 2:55:31 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 2:50:31 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 2:45:31 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 2:40:31 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 2:35:32 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 2:30:31 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 2:25:31 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 2:20:31 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 2:15:31 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 2:10:31 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 2:05:31 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 2:00:31 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 1:55:31 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 1:50:31 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 1:45:29 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 1:45:27 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 1:45:27 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 1:41:28 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 1:36:25 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 1:36:24 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 1:31:17 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 1:26:17 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 1:21:17 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 1:16:17 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 1:11:17 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 1:06:17 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 1:01:17 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 12:56:17 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 12:51:17 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 12:46:17 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 12:41:17 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 12:36:17 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 12:31:17 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 12:26:17 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 12:21:17 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 12:16:17 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 12:11:17 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 12:06:17 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/17/2020 12:01:17 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 11:56:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 11:51:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 11:46:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 11:41:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 11:36:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 11:31:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 11:26:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 11:21:18 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 11:16:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 11:11:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 11:06:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 11:01:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 10:56:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 10:51:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 10:46:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 10:41:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 10:36:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 10:31:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 10:26:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 10:21:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 10:16:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 10:11:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 10:06:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 10:01:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 9:56:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 9:51:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 9:47:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 9:47:21 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 9:47:21 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 9:47:21 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 9:46:27 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 9:41:13 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 9:41:11 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 9:41:11 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 9:33:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 9:28:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 9:23:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 9:18:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 9:13:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 9:08:36 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 9:03:34 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 8:58:34 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 8:53:34 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 8:48:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 8:43:34 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 8:38:34 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 8:33:38 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 8:28:34 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 8:23:34 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 8:20:40 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/16/2020 8:18:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 8:13:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 8:08:34 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 8:03:34 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 7:58:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 7:53:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 7:48:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 7:43:31 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 7:43:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 7:37:01 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 7:32:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 7:27:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 7:22:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 7:17:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 7:12:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 7:07:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 7:02:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 6:57:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 6:52:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 6:47:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 6:42:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 6:37:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 6:32:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 6:27:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 6:22:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 6:17:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 6:12:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 6:07:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 6:02:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 5:57:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 5:52:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 5:47:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 5:42:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 5:37:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 5:32:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 5:27:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 5:22:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 5:17:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 5:12:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 5:07:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 5:02:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 4:57:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 4:52:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 4:47:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 4:42:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 4:37:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 4:32:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 4:27:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 4:22:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 4:17:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 4:12:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 4:07:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 4:02:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 3:57:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 3:52:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 3:47:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 3:42:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 3:37:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 3:32:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 3:27:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 3:22:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 3:17:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 3:12:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 3:07:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 3:02:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 2:57:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 2:52:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 2:47:01 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 2:42:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 2:37:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 2:32:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 2:26:57 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 2:26:54 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:46:26 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:46:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:46:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:53:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:48:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:43:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:38:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:33:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:28:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:23:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:18:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:14:11 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/16/2020 12:13:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:08:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:03:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 11:58:35 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 11:53:35 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 11:48:35 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 11:43:32 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 11:43:30 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 11:43:30 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 2:37:35 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 2:35:29 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 2:30:29 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 2:27:35 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 2:25:29 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 2:22:35 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 2:20:29 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 2:17:35 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 2:15:29 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 2:10:29 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 2:07:35 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 2:05:29 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 2:00:29 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:57:35 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:55:29 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:52:35 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:50:29 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:47:35 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:45:26 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:45:25 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:45:25 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:42:35 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:37:35 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:32:35 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:27:35 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:22:35 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:20:49 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/ocsp.pki.goog
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 19852
Name of client process: C:\Users\BViswanathan154242\OneDrive - Applied
Materials\Backup\MyDocs\FirefoxPortableESR\App\Firefox64\firefox.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/ocsp.pki.goog if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/ocsp.pki.goog to accept NTLM authentication
requests from this computer, set the security policy Network Security: Restrict
NTLM: Outgoing NTLM traffic to remote servers to Deny all, and then set the
security policy Network Security: Restrict NTLM: Add remote server exceptions and
list the target server HTTP/ocsp.pki.goog as an exception to use NTLM
authentication."
Information,10/16/2020 1:20:49 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/www.google.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 19852
Name of client process: C:\Users\BViswanathan154242\OneDrive - Applied
Materials\Backup\MyDocs\FirefoxPortableESR\App\Firefox64\firefox.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/www.google.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/www.google.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/www.google.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:20:49 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/www.google.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 19852
Name of client process: C:\Users\BViswanathan154242\OneDrive - Applied
Materials\Backup\MyDocs\FirefoxPortableESR\App\Firefox64\firefox.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/www.google.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/www.google.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/www.google.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:17:35 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:12:32 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:12:31 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 1:03:06 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:58:25 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/www.youtube.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 19852
Name of client process: C:\Users\BViswanathan154242\OneDrive - Applied
Materials\Backup\MyDocs\FirefoxPortableESR\App\Firefox64\firefox.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/www.youtube.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/www.youtube.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/www.youtube.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:58:06 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:53:06 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:48:06 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:43:06 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:38:06 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:33:06 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:28:06 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:23:06 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:18:06 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:13:06 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:08:06 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/16/2020 12:03:06 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 11:58:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 11:53:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 11:48:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 11:43:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 11:38:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 11:33:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 11:28:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 11:23:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 11:18:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 11:13:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 11:08:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 11:03:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 10:58:09 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 10:58:08 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 10:53:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 10:48:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 10:43:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 10:38:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 10:33:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 10:28:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 10:23:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 10:18:07 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 10:13:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 10:08:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 10:03:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 9:58:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 9:53:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 9:48:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 9:43:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 9:38:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 9:33:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 9:28:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 9:23:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 9:18:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 9:13:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 9:08:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 9:03:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 8:58:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 8:53:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 8:48:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 8:43:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 8:38:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 8:33:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 8:28:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 8:23:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 8:18:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 8:13:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 8:08:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 8:03:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 7:58:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 7:53:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 7:48:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 7:43:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 7:38:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 7:33:07 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 7:28:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 7:23:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 7:18:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 7:13:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 7:08:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 7:03:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 7:03:26 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 6:58:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 6:53:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 6:48:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 6:43:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 6:38:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 6:33:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 6:28:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 6:23:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 6:18:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 6:13:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 6:08:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 6:03:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 5:58:03 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 5:58:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 5:58:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 5:53:10 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 5:48:11 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 5:43:10 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 5:38:10 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 5:33:09 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 5:28:11 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 5:23:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 5:23:02 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 5:23:02 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 5:15:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 5:10:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 5:05:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 5:00:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 4:55:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 4:50:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 4:45:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 4:40:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 4:35:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 4:30:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 4:25:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 4:20:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 4:15:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 4:10:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 4:05:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 4:00:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:55:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:50:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:45:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:40:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:35:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:30:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:25:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:20:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:15:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:10:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:05:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:00:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:55:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:50:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:45:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:40:38 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:35:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:30:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:25:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:20:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:15:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:10:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:05:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:00:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:55:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:50:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:45:26 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:45:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:45:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:41:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:36:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:31:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:26:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:21:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:16:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:11:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:06:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:01:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:56:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:51:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:46:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:41:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:36:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:31:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:26:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:21:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:16:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:11:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:06:22 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:01:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 11:56:23 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 11:51:23 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 11:46:20 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 11:46:18 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 11:46:18 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 4:03:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:58:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:53:53 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:48:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:43:50 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:38:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:33:52 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:28:49 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:23:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:18:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:13:49 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:08:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 3:03:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:58:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:53:49 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:48:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:43:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:38:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:33:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:28:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:23:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:18:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:13:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:08:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 2:03:52 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:58:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:53:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:48:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:45:29 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:45:27 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:45:25 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:45:23 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:45:23 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:45:23 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:43:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:38:49 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:33:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:28:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:23:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:18:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:13:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:08:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 1:03:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:58:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:53:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:48:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:43:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:38:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:33:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:28:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:23:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:18:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:13:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:08:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/15/2020 12:03:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:58:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:53:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:48:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:43:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:38:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:33:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:28:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:23:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:18:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:13:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:08:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:03:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:58:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:53:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:48:49 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:43:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:38:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:33:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:28:54 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:23:49 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:18:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:13:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:08:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:03:49 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:58:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:53:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:48:49 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:43:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:38:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:33:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:28:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:23:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:18:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:13:49 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:08:49 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:03:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 8:58:49 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 8:53:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 8:48:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 8:43:49 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 8:38:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 8:33:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 8:28:49 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 8:23:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 8:18:49 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 8:13:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 8:08:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 8:03:53 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 7:58:49 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 7:53:49 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 7:48:49 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 7:43:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 7:38:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 7:33:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 7:28:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 7:23:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 7:18:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 7:13:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 7:08:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 7:03:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 6:58:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 6:53:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 6:48:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 6:43:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 6:38:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 6:33:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 6:28:49 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 6:23:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 6:18:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 6:13:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 6:08:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 6:03:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 5:58:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 5:53:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 5:48:49 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 5:43:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 5:38:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 5:33:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 5:28:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 5:23:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 5:18:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 5:13:49 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 5:08:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 5:03:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 4:58:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 4:53:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 4:48:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 4:43:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 4:39:11 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 4:39:09 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 4:39:07 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 4:39:07 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 4:33:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 4:28:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 4:23:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 4:18:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 4:13:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 4:08:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 4:03:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 3:58:49 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 3:56:32 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/14/2020 3:56:32 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/14/2020 3:56:32 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/14/2020 3:56:32 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/14/2020 3:53:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 3:48:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 3:43:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 3:38:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 3:33:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 3:28:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 3:23:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 3:18:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 3:13:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 3:08:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 3:03:50 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 2:58:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 2:53:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 2:48:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 2:43:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 2:38:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 2:33:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 2:28:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 2:23:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 2:18:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 2:13:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 2:08:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 2:03:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 1:58:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 1:53:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 1:48:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 1:43:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 1:38:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 1:33:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 1:28:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 1:23:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 1:18:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 1:13:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 1:08:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 1:03:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 12:58:49 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 12:53:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 12:50:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 12:50:14 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 12:48:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 12:43:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 12:38:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 12:33:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 12:28:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 12:23:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 12:18:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 12:13:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 12:08:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 12:03:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:58:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:53:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:48:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:43:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:38:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:33:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:28:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:23:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:18:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:13:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:08:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 11:03:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:58:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:53:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:48:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:43:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:38:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:33:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:28:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:23:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:18:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:13:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:08:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 10:03:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:58:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:53:56 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:48:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:43:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:38:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:33:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:28:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:23:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:18:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:13:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:08:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 9:03:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 8:58:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 8:53:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 8:48:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 8:48:45 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 8:48:44 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 3:10:28 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 3:10:27 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 1:26:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 1:26:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 1:26:44 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 1:26:44 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 1:26:44 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 12:50:21 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 12:50:19 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 12:50:17 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 12:50:13 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 12:50:13 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/14/2020 12:50:13 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 9:52:26 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/13/2020 9:52:26 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/13/2020 9:52:26 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/13/2020 9:52:26 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/13/2020 9:52:26 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/13/2020 8:56:54 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 8:56:53 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 8:56:50 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 8:53:16 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 8:48:16 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 8:43:16 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 8:38:16 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 8:33:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 8:28:16 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 8:23:15 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 8:18:16 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 8:13:15 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 8:08:16 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 8:03:16 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 7:58:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 7:53:16 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 7:48:16 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 7:43:16 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 7:40:10 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 7:40:08 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 7:40:08 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 7:38:16 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 7:33:16 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 7:28:16 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 7:23:20 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 7:18:16 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 7:13:16 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 7:08:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 7:03:17 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 6:58:16 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 6:53:13 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 6:53:11 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 6:47:25 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 6:46:53 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 6:46:40 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 6:46:39 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 6:42:05 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 6:42:02 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 6:42:02 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 6:32:22 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 6:32:20 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 6:32:20 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 6:32:20 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 6:32:20 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 6:32:14 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 6:32:14 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 6:32:11 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/13/2020 5:50:08 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.point.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 2276
Name of client process: C:\Program Files (x86)\Microsoft
Office\root\Office16\OUTLOOK.EXE
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.point.amat.com if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.point.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.point.amat.com as an exception
to use NTLM authentication."
Information,10/13/2020 2:21:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/13/2020 2:21:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/13/2020 2:21:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/13/2020 2:21:29 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/13/2020 12:46:41 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 15576
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/12/2020 2:08:34 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/spcustomapps.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 2276
Name of client process: C:\Program Files (x86)\Microsoft
Office\root\Office16\OUTLOOK.EXE
LUID of client process: 0xC20E5
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/spcustomapps.amat.com if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/spcustomapps.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/spcustomapps.amat.com as an exception to
use NTLM authentication."
Information,10/11/2020 3:38:22 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/spcustomapps.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 14232
Name of client process: C:\Program Files (x86)\Internet Explorer\iexplore.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/spcustomapps.amat.com if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/spcustomapps.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/spcustomapps.amat.com as an exception to
use NTLM authentication."
Information,10/11/2020 3:38:08 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/spcustomapps.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 14232
Name of client process: C:\Program Files (x86)\Internet Explorer\iexplore.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/spcustomapps.amat.com if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/spcustomapps.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/spcustomapps.amat.com as an exception to
use NTLM authentication."
Information,10/11/2020 3:38:06 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/spcustomapps.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 14232
Name of client process: C:\Program Files (x86)\Internet Explorer\iexplore.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/spcustomapps.amat.com if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/spcustomapps.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/spcustomapps.amat.com as an exception to
use NTLM authentication."
Information,10/11/2020 3:37:59 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/spcustomapps.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 14232
Name of client process: C:\Program Files (x86)\Internet Explorer\iexplore.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/spcustomapps.amat.com if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/spcustomapps.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/spcustomapps.amat.com as an exception to
use NTLM authentication."
Information,10/11/2020 3:37:55 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/spcustomapps.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 14232
Name of client process: C:\Program Files (x86)\Internet Explorer\iexplore.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/spcustomapps.amat.com if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/spcustomapps.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/spcustomapps.amat.com as an exception to
use NTLM authentication."
Information,10/11/2020 3:37:51 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/spcustomapps.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 14232
Name of client process: C:\Program Files (x86)\Internet Explorer\iexplore.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/spcustomapps.amat.com if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/spcustomapps.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/spcustomapps.amat.com as an exception to
use NTLM authentication."
Information,10/11/2020 3:37:51 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/spcustomapps.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 14232
Name of client process: C:\Program Files (x86)\Internet Explorer\iexplore.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/spcustomapps.amat.com if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/spcustomapps.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/spcustomapps.amat.com as an exception to
use NTLM authentication."
Information,10/11/2020 3:37:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/spcustomapps.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 14232
Name of client process: C:\Program Files (x86)\Internet Explorer\iexplore.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/spcustomapps.amat.com if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/spcustomapps.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/spcustomapps.amat.com as an exception to
use NTLM authentication."
Information,10/11/2020 3:37:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/spcustomapps.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 14232
Name of client process: C:\Program Files (x86)\Internet Explorer\iexplore.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/spcustomapps.amat.com if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/spcustomapps.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/spcustomapps.amat.com as an exception to
use NTLM authentication."
Information,10/11/2020 3:37:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/spcustomapps
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 19864
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/spcustomapps if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/spcustomapps to accept NTLM authentication
requests from this computer, set the security policy Network Security: Restrict
NTLM: Outgoing NTLM traffic to remote servers to Deny all, and then set the
security policy Network Security: Restrict NTLM: Add remote server exceptions and
list the target server HTTP/spcustomapps as an exception to use NTLM
authentication."
Information,10/11/2020 3:37:40 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/spcustomapps
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 19864
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/spcustomapps if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/spcustomapps to accept NTLM authentication
requests from this computer, set the security policy Network Security: Restrict
NTLM: Outgoing NTLM traffic to remote servers to Deny all, and then set the
security policy Network Security: Restrict NTLM: Add remote server exceptions and
list the target server HTTP/spcustomapps as an exception to use NTLM
authentication."
Information,10/11/2020 3:37:37 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/spcustomapps
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 19864
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/spcustomapps if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/spcustomapps to accept NTLM authentication
requests from this computer, set the security policy Network Security: Restrict
NTLM: Outgoing NTLM traffic to remote servers to Deny all, and then set the
security policy Network Security: Restrict NTLM: Add remote server exceptions and
list the target server HTTP/spcustomapps as an exception to use NTLM
authentication."
Information,10/11/2020 3:22:41 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/11/2020 3:22:38 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/11/2020 3:22:36 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/11/2020 3:22:36 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/11/2020 1:03:38 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/11/2020 1:03:37 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/11/2020 1:03:36 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/11/2020 1:03:35 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/11/2020 1:03:35 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/11/2020 1:03:35 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/10/2020 5:01:37 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/10/2020 5:01:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/10/2020 5:01:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/10/2020 5:01:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/10/2020 5:01:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/10/2020 5:01:26 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/10/2020 5:01:25 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/10/2020 5:01:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/10/2020 12:46:12 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/10/2020 12:46:12 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/10/2020 12:46:12 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/10/2020 12:46:12 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/9/2020 11:54:26 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:49:26 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:44:25 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:39:25 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:34:25 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:27:49 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:27:48 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:27:34 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:27:34 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:24:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:24:22 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:24:21 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:24:21 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:24:21 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:24:04 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:22:32 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:22:32 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:22:32 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:22:32 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:22:31 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:22:31 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:22:02 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:17:02 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:17:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:17:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:17:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:17:00 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:16:54 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:16:54 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 11:16:52 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/9/2020 4:42:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/8/2020 11:03:14 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/8/2020 2:20:44 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/spcustomapps.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 23644
Name of client process: C:\Program Files (x86)\Microsoft
Office\root\Office16\OUTLOOK.EXE
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/spcustomapps.amat.com if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/spcustomapps.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/spcustomapps.amat.com as an exception to
use NTLM authentication."
Information,10/8/2020 2:16:47 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/spcustomapps.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 23644
Name of client process: C:\Program Files (x86)\Microsoft
Office\root\Office16\OUTLOOK.EXE
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/spcustomapps.amat.com if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/spcustomapps.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/spcustomapps.amat.com as an exception to
use NTLM authentication."
Information,10/8/2020 3:26:44 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/8/2020 3:26:44 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/8/2020 3:26:44 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/8/2020 3:26:44 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/8/2020 3:26:44 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/8/2020 3:26:44 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/7/2020 11:11:38 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/adfs.amat.com
Supplied user: ssuresh164969
Supplied domain: (NULL)
PID of client process: 8552
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6C7158C2
User identity of client process: ssuresh164969
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/adfs.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/adfs.amat.com to accept NTLM authentication
requests from this computer, set the security policy Network Security: Restrict
NTLM: Outgoing NTLM traffic to remote servers to Deny all, and then set the
security policy Network Security: Restrict NTLM: Add remote server exceptions and
list the target server HTTP/adfs.amat.com as an exception to use NTLM
authentication."
Information,10/7/2020 5:48:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/7/2020 5:48:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/7/2020 5:48:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/7/2020 5:48:35 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 34280
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x6A2D7D87
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/7/2020 5:33:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 5:28:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 5:23:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 5:18:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 5:13:52 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: TERMSRV/DCA-APP-1241
Supplied user: 154242a
Supplied domain: AMAT
PID of client process: 884
Name of client process: C:\Windows\System32\lsass.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server TERMSRV/DCA-APP-1241 if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server TERMSRV/DCA-APP-1241 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server TERMSRV/DCA-APP-1241 as an exception to use
NTLM authentication."
Information,10/7/2020 5:13:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 5:08:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 5:03:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 4:58:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 4:53:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 4:48:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 4:43:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 4:38:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 4:33:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 4:28:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 4:23:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 4:18:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 4:13:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 4:08:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 4:03:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 3:58:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 3:53:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 3:48:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 3:43:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 3:38:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 3:33:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 3:28:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 3:23:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 3:18:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 3:13:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 3:08:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 3:03:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:58:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:55:22 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:55:20 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:53:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:48:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:43:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:38:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:33:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:28:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:23:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:18:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:13:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:08:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:03:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:58:26 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:53:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:48:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:43:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:38:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:33:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:28:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:23:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:18:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:13:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:08:23 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:03:24 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 12:58:21 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 12:58:19 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 12:58:19 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:41:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:36:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:31:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:26:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:21:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:16:48 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:11:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:06:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 2:01:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:56:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:51:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:46:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:41:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:36:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:31:45 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:26:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:21:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:16:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:11:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:06:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 1:01:45 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 12:56:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 12:51:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 12:46:45 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 12:41:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 12:36:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 12:31:45 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 12:26:45 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 12:21:45 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 12:16:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 12:11:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 12:06:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/7/2020 12:01:46 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 11:56:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 11:51:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 11:46:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 11:41:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 11:36:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 11:31:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 11:26:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 11:21:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 11:16:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 11:13:50 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/searchapplied
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/searchapplied if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/searchapplied to accept NTLM authentication
requests from this computer, set the security policy Network Security: Restrict
NTLM: Outgoing NTLM traffic to remote servers to Deny all, and then set the
security policy Network Security: Restrict NTLM: Add remote server exceptions and
list the target server HTTP/searchapplied as an exception to use NTLM
authentication."
Information,10/6/2020 11:11:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 11:06:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 11:01:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 10:56:47 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 10:51:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 10:46:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 10:41:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 10:36:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 10:31:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 10:28:27 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/6/2020 10:26:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 10:21:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 10:16:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 10:11:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 10:06:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 10:01:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 9:56:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 9:51:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 9:46:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 9:41:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 9:36:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 9:31:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 9:26:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 9:21:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 9:16:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 9:11:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 9:06:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 9:01:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 8:56:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 8:51:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 8:46:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 8:41:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 8:36:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 8:31:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 8:29:27 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/6/2020 8:26:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 8:21:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 8:16:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 8:11:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 8:06:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 8:01:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 7:56:49 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 7:51:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 7:46:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 7:41:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 7:36:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 7:27:42 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 7:27:42 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 7:26:43 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 7:26:38 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 7:26:38 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 7:26:38 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 7:26:38 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 7:26:38 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 7:26:38 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 7:21:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 7:16:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 7:11:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 7:06:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 7:01:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 6:56:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 6:51:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 6:46:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 6:41:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 6:36:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 6:31:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 6:26:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 6:21:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 6:16:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 6:08:43 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 6:05:18 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 6:05:03 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)
Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 6:01:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 5:56:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 5:51:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 5:44:41 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 5:41:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 5:36:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 5:31:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 5:26:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 5:21:46 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 5:11:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 5:06:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 5:01:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 4:56:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.
If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 4:51:45 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 4:47:31 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.
If you want only the target server HTTP/mydata.amat.com to accept NTLM
authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 4:47:08 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 4:44:08 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 4:44:08 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 4:41:44 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 4:41:42 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 4:41:42 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 4:41:42 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 4:41:42 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 4:41:34 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 4:41:33 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/6/2020 4:41:31 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/mydata.amat.com
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/mydata.amat.com if the security policy Network Security:
Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/mydata.amat.com to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/mydata.amat.com as an exception to use
NTLM authentication."
Information,10/5/2020 9:14:55 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/5/2020 9:14:55 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/5/2020 5:53:37 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/5/2020 5:53:37 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/5/2020 5:53:37 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/5/2020 5:53:37 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/5/2020 5:53:37 PM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."
Information,10/5/2020 12:30:12 AM,Microsoft-Windows-NTLM,8001,Auditing NTLM,"NTLM
client blocked audit: Audit outgoing NTLM authentication traffic that would be
blocked.
Target server: HTTP/bcproxy.amat.com:8080
Supplied user: (NULL)
Supplied domain: (NULL)
PID of client process: 4596
Name of client process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
LUID of client process: 0x1381FA
User identity of client process: BViswanathan154242
Domain name of user identity of client process: AMAT
Mechanism OID: (NULL)

Audit the NTLM authentication requests from this computer that would be blocked by
the target server HTTP/bcproxy.amat.com:8080 if the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers is set to Deny
all.

If you want all servers to accept NTLM authentication requests from this computer,
set the security policy Network Security: Restrict NTLM: Outgoing NTLM traffic to
remote servers to Allow all.

If you want only the target server HTTP/bcproxy.amat.com:8080 to accept NTLM


authentication requests from this computer, set the security policy Network
Security: Restrict NTLM: Outgoing NTLM traffic to remote servers to Deny all, and
then set the security policy Network Security: Restrict NTLM: Add remote server
exceptions and list the target server HTTP/bcproxy.amat.com:8080 as an exception to
use NTLM authentication."

You might also like