cyberark / CYBRHardeningCheck

A utility to check CyberArk component servers hardening status
GNU General Public License v3.0
53 stars 25 forks source link

False positive in RDS Hardening check #103

Open matiya opened 2 years ago

matiya commented 2 years ago

Summary

This line checks that the SecurityLayer is configured with the value '1'. According to Microsoft this is "Negotiate". If I set the value to '2', that is, enforce TLS for RDP Authentication, then the HardenigCheck reports a warning and that I should change the value to '1'.