7.9 Ensure RC2 Cipher Suites is disabled

Information

RC2 is a weak symmetric-key block cipher. It is recommended that it be disabled.

Rationale:

By disabling RC2, there is a better chance of maintaining data confidentiality and integrity.

Solution

To disable RC2 40/128, ensure the following key is absent. If the key is present, ensure it is set to 0.

HKLM\System\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Ciphers\RC2 40/128\Enabled

To disable RC2 56/128, ensure the following key is absent. If the key is present, ensure it is set to 0.

HKLM\System\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Ciphers\RC2 56/128\Enabled

See Also

https://workbench.cisecurity.org/benchmarks/14293

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-13

Plugin: Windows

Control ID: 35fc7ded797895a569829548b51cf3949d86d6eed614a2bb22b117513ccc16f4