OpenSSH SSH Server (sshd)ID: oval:org.secpod.oval:def:80605 | Date: (C)2022-06-02 (M)2023-12-13 |
Class: COMPLIANCE | Family: windows |
SSH protocol based service to provide secure encrypted communications between two
untrusted hosts over an insecure network.
Note: This service is not installed by default. It is supplied with Windows, but it is installed
by enabling an optional Windows feature (OpenSSH Server)
Hosting an SSH server from a workstation is an increased security risk, as the attack
surface of that workstation is then greatly increased.
Note: This security concern applies to any SSH server application installed on a
workstation, not just the one supplied with Windows.
Default: Not Installed (Manual when installed)
Counter Measure:
The recommended state for this setting is Disabled or Not Installed.
Potential Impact:
The workstation will not be permitted to be a SSH host server.
Fix:
(1) GPO: Computer Configuration\Windows Settings\Security Settings\System Services\OpenSSH SSH Server
(2) REG: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sshd!Start
Platform: |
Microsoft Windows 10 |