TrimarcJake / Locksmith

A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.
https://github.com/TrimarcJake/Locksmith
Other
901 stars 89 forks source link

Create ESC11 Detections #170

Closed TrimarcJake closed 3 weeks ago

TrimarcJake commented 1 month ago

Is your feature request related to a problem? Please describe it: ESC11 is easy to identify. Locksmith should identify it.

Describe the solution or enhancement you would like: Check if certutil -getreg output contains the IF_ENFORCEENCRYPTICERTREQUEST flag. If yes, no finding.

Describe alternatives you've considered: Not doing anything is an alternative.

Additional context: no.

TrimarcJake commented 3 weeks ago

Included in v2024.11.10