Remote Management: Windows Remote Management (WinRM) client must not use Digest authentication


Digest authentication is not as strong as other options and may be subject to man-in-the-middle attacks. Disallowing Digest authentication will reduce this potential.


To fix this configure the policy value for
Computer Configuration
|_ Administrative Templates
|_ Windows Components
|_ Windows Remote Management (WinRM)
|_ WinRM Client
|_ Disallow Digest authentication = "Enabled"

STIG: Server 2019:
Server 2016: