5.043 - Terminal Services is not configured with the client connection encryption set to the required level.

Information

Remote connections must be encrypted to prevent interception of data or sensitive information. Selecting 'High Level' will ensure encryption of Terminal Services sessions in both directions.

Solution

2008 - Configure the policy value for Computer Configuration -> Administrative Templates -> Windows Components -> Terminal Services ->Terminal Server -> Security 'Set Client Connection Encryption Level' will be set to 'Enabled' and select 'High Level' for the 'Encryption Level'.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_Windows_2008_MS_V6R46_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-17(2), CAT|II, CCI|CCI-000068, CCI|CCI-002890, CSCv6|3.4, Rule-ID|SV-16953r2_rule, STIG-ID|5.043, Vuln-ID|V-3454

Plugin: Windows

Control ID: 05ee7553ec64757d3e40857f101ea9376706d22988a77674f063800ff8df5d5c