1.2.4.6.3 Set 'Allow Basic authentication' to 'Disabled'

Information

This policy setting allows you to manage whether the Windows Remote Management (WinRM) service accepts Basic authentication
from a remote client.

Solution

Make sure 'Allow Basic authentication' is set to 'Disabled'

See Also

https://workbench.cisecurity.org/files/17

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-17(4), CSCv6|16.13

Plugin: Windows

Control ID: 37366d7c59bb611f2662db54aef9893c4cef4d34769158b996467f373c319d63