Allow Basic authentication - Client - AllowBasic

Information

This policy setting allows you to manage whether the Windows Remote Management (WinRM) client uses Basic authentication.

If you enable this policy setting the WinRM client uses Basic authentication. If WinRM is configured to use HTTP transport the user name and password are sent over the network as clear text.

If you disable or do not configure this policy setting the WinRM client does not use Basic authentication.

Solution

Policy Path: Windows Components\Windows Remote Management (WinRM)\WinRM Client
Policy Setting Name: Allow Basic authentication

See Also

https://blogs.technet.microsoft.com/secguide/2016/10/17/security-baseline-for-windows-10-v1607-anniversary-edition-and-windows-server-2016/

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-17(4), CSCv6|16.13

Plugin: Windows

Control ID: 416ffa8556f4bb5caf368dbc14b97559e71cc2030b0ea88799901cdf2f8d7fd0