Remote Management: Windows Remote Management (WinRM) client must not allow unencrypted traffic

0ccb829b-b4e0-45eb-9ba8-82a643949d74

Unencrypted remote access to a system can allow sensitive information to be compromised. Windows remote management connections must be encrypted to prevent this.

Remediation

To fix this configure the policy value for:
Computer Configuration
|_ Administrative Templates
|_ Windows Components
|_ Windows Remote Management (WinRM)
|_ WinRM Client
|_ Allow unencrypted traffic to "Disabled".

STIG:
Server
2022: https://system32.eventsentry.com/stig/viewer/V-254379
2019: https://system32.eventsentry.com/stig/viewer/V-205816

Desktop:
W11: https://system32.eventsentry.com/stig/viewer/V-253417
W10: https://system32.eventsentry.com/stig/viewer/V-220863

Nist 800-53: AC-17(2),AC-17(a),CM-6(a),IA-5(1)(c),MA-4(6),SC-12(2),SC-12(3),SC-13
CIS: 5.2.10
CIS CSC V8: 12.7
CSA CCM v4: HRS-04
PCI v3.2:12.3.8, 12.3.9
PCI v4.0:12.2.1

SRG-OS-000393-GPOS-00173, SRG-OS-000394-GPOS-00174