5e2501a8-9c2b-4f46-bf47-6049726bc109
Inappropriate granting of user rights can provide system, administrative, and other high-level capabilities.
The "Deny log on as a service" user right defines accounts that are denied logon as a service.
Incorrect configurations could prevent services from starting and result in a denial of service.
To fix this configure the policy value for
Computer Configuration
|_ Windows Settings
|_ Security Settings
|_ Local Policies
|_ User Rights Assignment
|_ Deny log on as a service to include no entries (blank)
STIG: Server:
2025: https://system32.eventsentry.com/stig/viewer/V-278170
2022: https://system32.eventsentry.com/stig/viewer/V-254423
2019: https://system32.eventsentry.com/stig/viewer/V-205669
2016: https://system32.eventsentry.com/stig/viewer/V-225002
NIST 800-53 : AC-3, AC-6, CM-6
NIST 800-171: 3.1.1, 3.1.2, 3.4.6
CMMC v2.0 L2: AC.L2-3.1.1, AC.L2-3.1.2, CM.L2-3.4.6
PCI-DSS v4.0: 2.2.1, 7.2.1
HIPAA SR : ยง164.312(a)(1)
HIPAA HICP : Practice 3 (Identity and Access Management)
Manage your cookie preferences below:
To learn more about our use of cookies, please see our
Privacy Policy.