1.160 WN10-CC-000290

Information

Remote Desktop Services must be configured with the client connection encryption set to the required level.

GROUP ID: V-220852RULE ID: SV-220852r958408

Remote connections must be encrypted to prevent interception of data or sensitive information. Selecting 'High Level' will ensure encryption of Remote Desktop Services sessions in both directions.

Solution

Configure the policy value for

Computer Configuration >> Administrative Templates >> Windows Components >> Remote Desktop Services >> Remote Desktop Session Host >> Security >> 'Set client connection encryption level'

to 'Enabled' and 'High Level'.

See Also

https://workbench.cisecurity.org/benchmarks/23869

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-17(2)

Plugin: Windows

Control ID: e1a8706b0c80739a0f1046c76d70914d7f902f628c095aab8378ff2c35c33e1f