1.228 WN22-SO-000210

Information

Windows Server 2022 must not allow anonymous SID/Name translation.

GROUP ID: V-254465
RULE ID: SV-254465r991589

Allowing anonymous SID/Name translation can provide sensitive information for accessing a system. Only authorized users must be able to perform such translations.

Solution

Configure the policy value for

Computer Configuration >> Windows Settings >> Security Settings >> Local Policies >> Security Options >> Network access: Allow anonymous SID/Name translation to 'Disabled'

See Also

https://workbench.cisecurity.org/benchmarks/22357

Item Details

Category: ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION

References: 800-53|AC-6(10), 800-53|IA-2(2)

Plugin: Windows

Control ID: 55c96688968e6d2a8d6e1b87cbd80fac9781c3920a711da44835237511869204