Configure RPC connection settings - RpcAuthentication

Information

This policy setting controls which protocol and protocol settings to use for outgoing RPC connections to a remote print spooler.

By default RPC over TCP is used and authentication is always enabled. For RPC over named pipes authentication is always enabled for domain joined machines but disabled for non domain joined machines.

Protocol to use for outgoing RPC connections: -- 'RPC over TCP': Use RPC over TCP for outgoing RPC connections to a remote print spooler -- 'RPC over named pipes': Use RPC over named pipes for outgoing RPC connections to a remote print spoolerUse authentication for outgoing RPC over named pipes connections: -- 'Default': By default domain joined computers enable RPC authentication for RPC over named pipes while non domain joined computers disable RPC authentication for RPC over named pipes -- 'Authentication enabled': RPC authentication will be used for outgoing RPC over named pipes connections -- 'Authentication disabled': RPC authentication will not be used for outgoing RPC over named pipes connectionsIf you disable or do not configure this policy setting the above defaults will be used.

Solution

Policy Path: Printers
Policy Setting Name: Configure RPC connection settings

See Also

https://techcommunity.microsoft.com/t5/microsoft-security-baselines/windows-11-version-23h2-security-baseline/ba-p/3967618

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b.

Plugin: Windows

Control ID: 712acf68dc6d79b296f55fe96cbc085ba457adbd2370a7f2cc77e5aee14994bf