1.1.3.11.11 Set 'Network security: LAN Manager authentication level' to 'Send NTLMv2 response only. Refuse LM & NTLM'

Information

LAN Manager (LM) is a family of early Microsoft client/server software that allows users to link personal
computers together on a single network.

Solution

Make sure 'Network security: LAN Manager authentication level' is set to send NTLMv2 response only and refuse LM and NTLM.

See Also

https://workbench.cisecurity.org/files/17

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5(6), CSCv6|13

Plugin: Windows

Control ID: 1ba7bb977c5dcaafb044d14ff46f38a7be6518b0df191fbc5933b5c0429866eb