[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247768

 
 

909

 
 

194555

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Network security: Minimum session security for NTLM SSP based (including secure RPC) servers

ID: oval:org.secpod.oval:def:19627Date: (C)2014-05-29   (M)2023-07-14
Class: COMPLIANCEFamily: windows




The Require 128-bit encryption option for the Network security: Minimum session security for NTLM SSP based (including secure RPC) servers setting should be enabled or disabled as appropriate. This security setting allows a server to require the negotiation of message confidentiality (encryption), message integrity, 128-bit encryption, or NTLMv2 session security. These values are dependent on the LAN Manager Authentication Level security setting value. Require 128-bit encryption. The connection will fail if strong encryption (128-bit) is not negotiated. Fix: (1) GPO: Computer Configuration\Windows Settings\Security Settings\Local Policies\Security Options\Network security: Minimum session security for NTLM SSP based (including secure RPC) servers (2) KEY: HKLM\SYSTEM\CurrentControlSet\Control\Lsa\MSV1_0\NTLMMinServerSec

Platform:
Microsoft Windows Server 2008 R2
Reference:
CCE-18944-9
CPE    1
cpe:/o:microsoft:windows_server_2008:r2
CCE    1
CCE-18944-9
XCCDF    4
xccdf_org.secpod_benchmark_HIPAA_45CFR_164_Windows_Server_2008_R2
xccdf_org.secpod_benchmark_general_Windows_Server_2008_R2
xccdf_org.secpod_benchmark_PCI_3_2_Windows_Server_2008_R2
xccdf_org.secpod_benchmark_NIST_800_171_R1_Windows_Server_2008_R2
...

© SecPod Technologies