Intune Endpoint Hardening
search
Ctrlk
Intune Endpoint Hardening
  • Intune Endpoint Hardening
    • 2. Local Policies
      • 2.2 User Rights Assignment
      • 2.3 Security Options
        • 2.3.1 Accounts
        • 2.3.2 Audit
        • 2.3.3 DCOM
        • 2.3.4 Devices
        • 2.3.5 Domain controller
        • 2.3.6 Domain member
        • 2.3.7 Interactive logon
        • 2.3.8 Microsoft network client
        • 2.3.9 Microsoft network server
          • *2.3.9.1 (L1) Ensure 'Microsoft network server: Amount of idle time required before suspending sess
          • 2.3.9.2 (L1) Ensure 'Microsoft network server: Digitally sign communications (always)' is set to 'E
          • 2.3.9.3 (L1) Ensure 'Microsoft network server: Digitally sign communications (if client agrees)' is
          • 2.3.9.4 (L1) Ensure 'Microsoft network server: Disconnect clients when logon hours expire' is set t
          • *2.3.9.5 (L1) Ensure 'Microsoft network server: Server SPN target name validation level' is set to
    • Account Protection
    • Auditing and Logs
    • Identification and Authentication
    • 17. Advanced Audit Policy Configuration
    • 18. Administrative Templates (Computer)
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. Intune Endpoint Hardeningchevron-right
  2. 2. Local Policieschevron-right
  3. 2.3 Security Optionschevron-right
  4. 2.3.9 Microsoft network server

*2.3.9.5 (L1) Ensure 'Microsoft network server: Server SPN target name validation level' is set to

2.3.9.5 (L1) Ensure 'Microsoft network server: Server SPN target name validation level' is set to 'Accept if provided by client' or higher (Automated)

circle-info

NOT AVAILABLE

LogoMicrosoft network server Server SPN target name validation level - Windows 10MicrosoftLearnchevron-right

https://learn.microsoft.com/en-us/windows/security/threat-protection/security-policy-settings/microsoft-network-server-server-spn-target-name-validation-levelarrow-up-righthttps://learn.microsoft.com/en-us/windows/security/threat-protection/security-policy-settings/microsoft-network-server-server-spn-target-name-validation-levelarrow-up-right

Previous2.3.9.4 (L1) Ensure 'Microsoft network server: Disconnect clients when logon hours expire' is set tchevron-leftNextAccount Protectionchevron-right

Last updated 2 years ago