UCF STIG Viewer Logo

The Windows Remote Management (WinRM) client must not allow unencrypted traffic.


Overview

Finding ID Version Rule ID IA Controls Severity
V-36713 WN12-CC-000124 SV-51753r1_rule ECCT-1 Medium
Description
Unencrypted remote access to a system can allow sensitive information to be compromised. Windows remote management connections must be encrypted to prevent this.
STIG Date
Windows Server 2012 / 2012 R2 Domain Controller Security Technical Implementation Guide 2014-07-09

Details

Check Text ( None )
None
Fix Text (F-44828r1_fix)
Configure the policy value for Computer Configuration -> Administrative Templates -> Windows Components -> Windows Remote Management (WinRM) -> WinRM Client -> "Allow unencrypted traffic" to "Disabled".