Information
SQL Server supports Shared Memory, Named Pipes, TCP/IP and VIA protocols. However, SQL Server should be configured to use the bare minimum required based on the organization's needs.
Rationale:
Using fewer protocols minimizes the attack surface of SQL Server and, in some cases, can protect it from remote attacks.
NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.
Solution
Open SQL Server Configuration Manager; go to the SQL Server Network Configuration. Ensure that only required protocols are enabled. Disable protocols not necessary.
Impact:
The Database Engine must be stopped and restarted for the change to take effect.
Default Value:
By default, TCP/IP and Shared Memory protocols are enabled on all commercial editions.
References:
https://docs.microsoft.com/en-us/sql/database-engine/configure-windows/enable-or-disable-a-server-network-protocol