1.1.4.40 Set 'Replace a process level token' to 'Local Service, Network Service'

Information

This policy setting allows one process or service to start another service or process with a different
security access token.

Solution

Make sure 'Replace a process level token' is set to Local Service and Network Service.

See Also

https://workbench.cisecurity.org/files/17

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6(7)(b), CSCv6|16

Plugin: Windows

Control ID: 710cb9eaadd1788ca356947df6954010c2be5bed6452e3069c1a036425e7dced