1.7.6 Enable TLS 1.2 - 'DisabledByDefault = 0'

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Enabling this protocol will help ensure the confidentiality and integrity of data in transit.

Solution

perform the following to enable tls 1.2: 1. set the following key to 0xffffffff hklm\system\currentcontrolset\control\securityproviders\schannel\protocols\tls 1.2\server\enabled 2. set the following key to 0 hklm\system\currentcontrolset\control\securityproviders\schannel\protocols\tls 1.2\server\disabledbydefault

See Also

https://benchmarks.cisecurity.org/tools2/iis/CIS_Microsoft_IIS_7_Benchmark_v1.7.1.pdf

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-8

Plugin: Windows

Control ID: 67deb8a5e959a8939be0c77fcef6322c7c19c47438111fff7db2d9b0b7370979