Remote Desktop: Access this computer from the network user right must only be assigned to the Admins and RD Users groups

81b2dce5-a703-4bc0-a9e8-a8f59959c1e1

Inappropriate granting of user rights can provide system, administrative, and other high-level capabilities.

Accounts with the "Access this computer from the network" user right may access resources on the system, and must be limited to those that require it.

Remediation

To fix this configure the policy value for
Computer Configuration
|_ Windows Settings
|_ Security Settings
|_ Local Policies
|_ User Rights Assignment
|_ Access this computer from the network to only include the following groups or accounts:
- Administrators
- Remote Desktop Users

STIG: Desktop
W11: https://system32.eventsentry.com/stig/viewer/V-253480
W10: https://system32.eventsentry.com/stig/viewer/V-220957

NIST 800-53 : AC-3, AC-6, CM-6
NIST 800-171: 3.1.1, 3.1.2, 3.4.6
CMMC v2.0 L2: AC.L2-3.1.1, AC.L2-3.1.2, CM.L2-3.4.6
PCI-DSS v4.0: 2.2.1, 7.2.1
HIPAA SR : ยง164.312(a)(1)
HIPAA HICP : Practice 3 (Identity and Access Management)