1.131 WN22-CC-000380

Information

Windows Server 2022 Remote Desktop Services must be configured with the client connection encryption set to High Level.

GROUP ID: V-254369
RULE ID: SV-254369r958408

Remote connections must be encrypted to prevent interception of data or sensitive information. Selecting 'High Level' will ensure encryption of Remote Desktop Services sessions in both directions.

Satisfies: SRG-OS-000033-GPOS-00014, SRG-OS-000250-GPOS-00093

Solution

Configure the policy value for

Computer Configuration >> Administrative Templates >> Windows Components >> Remote Desktop Services >> Remote Desktop Session Host >> Security >> Set client connection encryption level to 'Enabled' with 'High Level' selected

See Also

https://workbench.cisecurity.org/benchmarks/22357

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-17(2), CAT|II, CCI|CCI-000068, CCI|CCI-001453, Rule-ID|SV-254369r958408_rule, STIG-ID|WN22-CC-000380, Vuln-ID|V-254369

Plugin: Windows

Control ID: 6247c2401d2ac56dccb9488f0e6fb63ab504d9bd8a757308238ff8b53cb97ec9