5.117 - Users must be prevented from connecting using Terminal Services.

Information

Allowing a Terminal Services session to a workstation enables another avenue of access that could be exploited. The system must be configured to prevent users from connecting to a computer using Terminal Services.

Solution

Configure the policy value for Computer Configuration -> Administrative Templates -> Windows Components -> Terminal Services -> Terminal Server -> Connections 'Allow users to connect remotely using Terminal Services' to 'Disabled.

See Also

http://iasecontent.disa.mil/stigs/zip/Oct2016/U_Windows_Vista_V6R41_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-17(1), CAT|II, CCI|CCI-002314, Rule-ID|SV-14859r2_rule, STIG-ID|5.117, Vuln-ID|V-14248

Plugin: Windows

Control ID: 9e91eebf3fb972c263d3f9b142c98258df9087a761aa0b3d5d084d1872964778