1.230 WN22-SO-000230

Information

Windows Server 2022 must not allow anonymous enumeration of shares.

GROUP ID: V-254467
RULE ID: SV-254467r958524

Allowing anonymous logon users (null session connections) to list all account names and enumerate all shared resources can provide a map of potential points to attack the system.

Solution

Configure the policy value for

Computer Configuration >> Windows Settings >> Security Settings >> Local Policies >> Security Options >> Network access: Do not allow anonymous enumeration of SAM accounts and shares to 'Enabled'

See Also

https://workbench.cisecurity.org/benchmarks/22357