Synchronize directory service dataID: oval:org.secpod.oval:def:56326 | Date: (C)2019-07-05 (M)2023-07-04 |
Class: COMPLIANCE | Family: windows |
This security setting determines which users and groups have the authority to synchronize all directory service data.
Fix:
(1) GPO: Computer Configuration\Windows Settings\Security Settings\Local Policies\User Rights Assignment!Synchronize directory service data
(2) WMI: root\rsop\computer#RSOP_UserPrivilegeRight#AccountList#UserRight='SeSyncAgentPrivilege' and precedence=1
Platform: |
Microsoft Windows Server 2019 |