1.174 WN10-CC-000355

Information

The Windows Remote Management (WinRM) service must not store RunAs credentials.

GROUP ID: V-220867RULE ID: SV-220867r1051033

Storage of administrative credentials could allow unauthorized access. Disallowing the storage of RunAs credentials for Windows Remote Management will prevent them from being used with plug-ins.

Solution

Configure the policy value for

Computer Configuration >> Administrative Templates >> Windows Components >> Windows Remote Management (WinRM) >> WinRM Service >> 'Disallow WinRM from storing RunAs credentials'

to 'Enabled'.

See Also

https://workbench.cisecurity.org/benchmarks/23869

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-11, CCI|CCI-002038, Rule-ID|SV-220867r1051033_rule, STIG-ID|WN10-CC-000355, Vuln-ID|V-220867

Plugin: Windows

Control ID: febb0b781d5e17276403f49f12c440bb9bd59c332a84e35d47a2cc233bb8edbb