Remote Management: Windows Remote Management (WinRM) client must not use Digest authentication

1a0eb6a5-9009-4dc3-b12f-bed65052c49d

Digest authentication is not as strong as other options and may be subject to man-in-the-middle attacks. Disallowing Digest authentication will reduce this potential.

Remediation

To fix this configure the policy value for Computer Configuration >> Administrative Templates >> Windows Components >> Windows Remote Management (WinRM) >> WinRM Client >> "Disallow Digest authentication" to "Enabled".

STIG: Server 2019: https://www.stigviewer.com/stig/windows_server_2019/2020-06-15/finding/V-93505
Server 2016: https://www.stigviewer.com/stig/microsoft_windows_server_2016/2021-09-29/finding/V-224960
Desktop: https://www.stigviewer.com/stig/windows_10/2021-08-18/finding/V-220868