2.2.21 (L1) Ensure 'Enable computer and user accounts to be trusted for delegation' is set to 'No O
2.2.21 (L1) Ensure 'Enable computer and user accounts to be trusted for delegation' is set to 'No One' (Automated)
This user right determines which users can set the Trusted for Delegation setting on a user or computer object. The user or object that's granted this privilege must have write access to the account control flags on the user or computer object. A server process running on a computer (or under a user context) that's trusted for delegation can access resources on another computer using delegated credentials of a client, as long as the client account doesn't have the Account can't be delegated account control flag set.
Previous2.2.20 (L1) Ensure 'Deny log on through Remote Desktop Services' to include 'Guests, Local account'Next2.2.22 (L1) Ensure 'Force shutdown from a remote system' is set to 'Administrators' (Automated)
Last updated