2.11 Ensure Unnecessary SQL Server Protocols are set to 'Disabled' - 'TCP/IP protocol is disabled'

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

SQL Server supports Shared Memory, Named Pipes, TCP/IP and VIA protocols however should be configured to use the bare minimum required based on the organization's needs. Using fewer protocols minimizes the attack surface of SQL Server and in some cases can protect it from remote attacks.

Solution

Open SQL Server Configuration Manager; go to the SQL Server Network Configuration. Ensure that only required protocols are enabled. Disable protocols not necessary.

See Also

https://workbench.cisecurity.org/files/2364

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7, CSCv6|9.1, CSCv7|9.2

Plugin: Windows

Control ID: 62c58ea4d62b964b84f499fd39585fe2095020847fd9246d2357f5b6177db479