1.1.3.7.1 Set 'Microsoft network client: Send unencrypted password to third-party SMB servers' to 'Disabled'

Information

Disable this policy setting to prevent the SMB redirector from sending plaintext passwords during authentication
to third-party SMB servers that do not support password encryption.

Solution

Make sure 'Microsoft network client: Send unencrypted password to third-party SMB servers' is set to disabled.

See Also

https://workbench.cisecurity.org/files/17

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-5(7), CSCv6|13

Plugin: Windows

Control ID: eaebc81444b05ac28c20dc08205b413d67befb3ee365c5f3674b0a5e6ced3026