2.3.8.3 Ensure 'Microsoft network client: Send unencrypted password to third-party SMB servers' is set to 'Disabled'

Information

Disable this policy setting to prevent the SMB redirector from sending plaintext passwords during authentication to third-party SMB servers that do not support password encryption.

Solution

Make sure 'Microsoft network client: Send unencrypted password to third-party SMB servers' is set to disabled.

See Also

https://workbench.cisecurity.org/files/1941

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-5(7), CSCv6|13

Plugin: Windows

Control ID: 57d6a3feae6a97544723c76da3081e88bf0b38d9104e30548fa27562b0eebaee