1.1.4.40 Set 'Replace a process level token' to 'Local Service, Network Service'

Information

This policy setting allows one process or service to start another service or process with a different
security access token.

Solution

Make sure 'Replace a process level token' is set to Local Service and Network Service.

See Also

https://workbench.cisecurity.org/files/17

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6(7)(b), CSCv6|16

Plugin: Windows

Control ID: 86c2dd412ed0c5dd9d69c9d241feba42d3af1b58be153ebade29a475d000befd