1.1.3.11.11 Set 'Network security: LAN Manager authentication level' to 'Send NTLMv2 response only. Refuse LM & NTLM'

Information

LAN Manager (LM) is a family of early Microsoft client/server software that allows users to link personal
computers together on a single network.

Solution

Make sure 'Network security: LAN Manager authentication level' is set to send NTLMv2 response only and refuse LM and NTLM.

See Also

https://workbench.cisecurity.org/files/17

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5(6), CSCv6|13

Plugin: Windows

Control ID: 225148ed378e1593f7fb589d1d8a0a8cd125861b80c956cdc22ef84f74cdb54d