| DE-PO-WIN-ADM-C-Additonal Nessus PCI Settings | |
| Data collected on: 2-9-2025 08:50:01 | |
| Domain | emea.tpg.ads |
| Owner | EMEA\Domain Admins |
| Created | 25-10-2013 11:34:44 |
| Modified | 9-2-2023 14:44:32 |
| User Revisions | 1 (AD), 1 (SYSVOL) |
| Computer Revisions | 5 (AD), 5 (SYSVOL) |
| Unique ID | {638ef956-d7f1-435f-8ea2-c44cd8b40fae} |
| GPO Status | User settings disabled |
| Location | Enforced | Link Status | Path |
|---|---|---|---|
| Clients | No | Enabled | emea.tpg.ads/DE/Systems/Clients |
| Name |
|---|
| EMEA\DE-L-SEC-Additonal Nessus PCI Computer Settings |
| Name | Allowed Permissions | Inherited |
|---|---|---|
| EMEA\DE-L-SEC-Additonal Nessus PCI Computer Settings | Read (from Security Filtering) | No |
| EMEA\DE-L-SEC-Delegation Modify Group Policy Settings Access | Edit settings, delete, modify security | No |
| EMEA\DE-L-SEC-Delegation Read Group Policy Results Data Access | Read | No |
| EMEA\Domain Admins | Edit settings, delete, modify security | No |
| EMEA\Domain Computers | Read | No |
| NT AUTHORITY\Authenticated Users | Read | No |
| NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS | Read | No |
| NT AUTHORITY\SYSTEM | Edit settings, delete, modify security | No |
| ROOT\Enterprise Admins | Edit settings, delete, modify security | No |
| S-1-5-21-513466819-3096973226-347852806-203252 | Read | No |
| Policy | Setting | Comment | ||||
|---|---|---|---|---|---|---|
| Require use of specific security layer for remote (RDP) connections | Enabled | PCI plugin 18405 | ||||
| ||||||
| Policy | Setting | Comment | ||||
| Require user authentication for remote connections by using Network Level Authentication | Enabled | PCI plugin 58453 and 18405 | ||||
| Set client connection encryption level | Enabled | PCI plugin 57690: Terminal Service Ecnryption | ||||
| ||||||
| Action | Update |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SYSTEM\CurrentControlSet\services\LanmanServer\Parameters |
| Value name | enablesecuritysignature |
| Value type | REG_DWORD |
| Value data | 0x1 (1) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| SMB Signing PCI 57608 |
| Action | Update |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SYSTEM\CurrentControlSet\services\LanmanServer\Parameters |
| Value name | requiresecuritysignature |
| Value type | REG_DWORD |
| Value data | 0x1 (1) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| SMB Signing PCI 57608 |
| Action | Update |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SYSTEM\CurrentControlSet\services\LanmanWorkstation\Parameters |
| Value name | RequireSecuritySignature |
| Value type | REG_DWORD |
| Value data | 0x1 (1) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| SMB Signing PCI 57608 |
| Action | Update |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SYSTEM\CurrentControlSet\services\LanmanWorkstation\Parameters |
| Value name | EnableSecuritySignature |
| Value type | REG_DWORD |
| Value data | 0x1 (1) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| SMB Signing PCI 57608 |
| Action | Create |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Windows\Sidebar |
| Value name | TurnOffSidebar |
| Value type | REG_DWORD |
| Value data | 0x1 (1) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| PCI Plugin 59915 Vulnerabillities in gadgets could allow remote code execution |
| Action | Update |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SYSTEM\CurrentControlSet\Control\Lsa |
| Value name | LmCompatibilityLevel |
| Value type | REG_DWORD |
| Value data | 0x3 (3) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |