5.1 Set 'Secure Protocol combinations' to 'Enabled:Only use TLS 1.0'

Information

The allowed encryption protocols determines the possible encryption types that can be used. Preventing the use of older protocols decreases vulnerability.

Solution

To implement the recommended configuration state, set the following Group Policy setting to Enabled.

Computer Configuration\Administrative Templates\Windows Components\Internet Explorer\Internet Control Panel\Advanced Page\Turn off Encryption Support\Turn off Encryption Support.

Then set the Secure Protocol combinations option to Only use TLS 1.0.

See Also

https://workbench.cisecurity.org/files/1516

Item Details

Audit Name: CIS IE 9 v1.0.0

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-13

Plugin: Windows

Control ID: ae199da8bdf19988c5d0fad6fd86073cfdc9f2ad16cf0f956b9d9ccfdb3bc25d