Advertisement
Guest User

secconfig.cfg

a guest
Dec 2nd, 2018
220
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 9.94 KB | None | 0 0
  1. [Unicode]
  2. Unicode=yes
  3. [System Access]
  4. MinimumPasswordAge = 15
  5. MaximumPasswordAge = 90
  6. MinimumPasswordLength = 8
  7. PasswordComplexity = 1
  8. PasswordHistorySize = 24
  9. LockoutBadCount = 5
  10. ResetLockoutCount = 30
  11. LockoutDuration = 30
  12. RequireLogonToChangePassword = 0
  13. ForceLogoffWhenHourExpire = 1
  14. NewAdministratorName = "Notadmin"
  15. NewGuestName = "Notguest"
  16. ClearTextPassword = 0
  17. LSAAnonymousNameLookup = 0
  18. EnableAdminAccount = 0
  19. EnableGuestAccount = 0
  20. [Event Audit]
  21. AuditSystemEvents = 3
  22. AuditLogonEvents = 3
  23. AuditObjectAccess = 3
  24. AuditPrivilegeUse = 3
  25. AuditPolicyChange = 3
  26. AuditAccountManage = 3
  27. AuditProcessTracking = 3
  28. AuditDSAccess = 3
  29. AuditAccountLogon = 3
  30. [Version]
  31. signature="$CHICAGO$"
  32. Revision=1
  33. [Registry Values]
  34. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Setup\RecoveryConsole\SecurityLevel=4,0
  35. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Setup\RecoveryConsole\SetCommand=4,0
  36. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\AllocateCDRoms=1,"1"
  37. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\AllocateDASD=1,"0"
  38. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\AllocateFloppies=1,"1"
  39. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\CachedLogonsCount=1,"0"
  40. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\ForceUnlockLogon=4,0
  41. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\PasswordExpiryWarning=4,14
  42. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\ScRemoveOption=1,"0"
  43. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorAdmin=4,1
  44. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorUser=4,1
  45. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\DisableCAD=4,0
  46. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\DontDisplayLastUserName=4,1
  47. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\DontDisplayLockedUserId=4,2
  48. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\DontDisplayUserName=4,1
  49. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\EnableInstallerDetection=4,1
  50. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA=4,1
  51. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\EnableSecureUIAPaths=4,1
  52. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\EnableUIADesktopToggle=4,0
  53. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\EnableVirtualization=4,1
  54. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\FilterAdministratorToken=4,0
  55. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\InactivityTimeoutSecs=4,300
  56. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\Kerberos\Parameters\SupportedEncryptionTypes=4,2147483644
  57. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\LegalNoticeCaption=1,"WARNING"
  58. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\LegalNoticeText=7,This computer is for authorized use only!
  59. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\MaxDevicePasswordFailedAttempts=4,5
  60. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\NoConnectedUser=4,3
  61. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\PromptOnSecureDesktop=4,1
  62. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\ScForceOption=4,0
  63. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\ShutdownWithoutLogon=4,0
  64. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\UndockWithoutLogon=4,0
  65. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\ValidateAdminCodeSignatures=4,1
  66. MACHINE\Software\Policies\Microsoft\Cryptography\ForceKeyProtection=4,2
  67. MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\AuthenticodeEnabled=4,0
  68. MACHINE\System\CurrentControlSet\Control\Lsa\AuditBaseObjects=4,0
  69. MACHINE\System\CurrentControlSet\Control\Lsa\CrashOnAuditFail=4,0
  70. MACHINE\System\CurrentControlSet\Control\Lsa\DisableDomainCreds=4,1
  71. MACHINE\System\CurrentControlSet\Control\Lsa\EveryoneIncludesAnonymous=4,0
  72. MACHINE\System\CurrentControlSet\Control\Lsa\FIPSAlgorithmPolicy\Enabled=4,1
  73. MACHINE\System\CurrentControlSet\Control\Lsa\ForceGuest=4,0
  74. MACHINE\System\CurrentControlSet\Control\Lsa\FullPrivilegeAuditing=3,0
  75. MACHINE\System\CurrentControlSet\Control\Lsa\LimitBlankPasswordUse=4,1
  76. MACHINE\System\CurrentControlSet\Control\Lsa\LmCompatibilityLevel=4,5
  77. MACHINE\System\CurrentControlSet\Control\Lsa\MSV1_0\allownullsessionfallback=4,0
  78. MACHINE\System\CurrentControlSet\Control\Lsa\MSV1_0\AuditReceivingNTLMTraffic=4,2
  79. MACHINE\System\CurrentControlSet\Control\Lsa\MSV1_0\NTLMMinClientSec=4,537395200
  80. MACHINE\System\CurrentControlSet\Control\Lsa\MSV1_0\NTLMMinServerSec=4,537395200
  81. MACHINE\System\CurrentControlSet\Control\Lsa\MSV1_0\RestrictReceivingNTLMTraffic=4,2
  82. MACHINE\System\CurrentControlSet\Control\Lsa\MSV1_0\RestrictSendingNTLMTraffic=4,2
  83. MACHINE\System\CurrentControlSet\Control\Lsa\NoLMHash=4,1
  84. MACHINE\System\CurrentControlSet\Control\Lsa\pku2u\AllowOnlineID=4,0
  85. MACHINE\System\CurrentControlSet\Control\Lsa\RestrictAnonymous=4,1
  86. MACHINE\System\CurrentControlSet\Control\Lsa\RestrictAnonymousSAM=4,1
  87. MACHINE\System\CurrentControlSet\Control\Lsa\RestrictRemoteSAM=1,"O:BAG:BAD:(A;;RC;;;BA)"
  88. MACHINE\System\CurrentControlSet\Control\Lsa\SCENoApplyLegacyAuditPolicy=4,0
  89. MACHINE\System\CurrentControlSet\Control\Lsa\SubmitControl=4,0
  90. MACHINE\System\CurrentControlSet\Control\Lsa\UseMachineId=4,1
  91. MACHINE\System\CurrentControlSet\Control\Print\Providers\LanMan Print Services\Servers\AddPrinterDrivers=4,1
  92. MACHINE\System\CurrentControlSet\Control\SecurePipeServers\Winreg\AllowedExactPaths\Machine=7,
  93. MACHINE\System\CurrentControlSet\Control\SecurePipeServers\Winreg\AllowedPaths\Machine=7,
  94. MACHINE\System\CurrentControlSet\Control\Session Manager\Kernel\ObCaseInsensitive=4,1
  95. MACHINE\System\CurrentControlSet\Control\Session Manager\Memory Management\ClearPageFileAtShutdown=4,1
  96. MACHINE\System\CurrentControlSet\Control\Session Manager\ProtectionMode=4,1
  97. MACHINE\System\CurrentControlSet\Control\Session Manager\SubSystems\optional=7,
  98. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\AutoDisconnect=4,15
  99. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\EnableForcedLogOff=4,1
  100. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\EnableS4U2SelfForClaims=4,0
  101. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\EnableSecuritySignature=4,1
  102. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\NullSessionPipes=7,
  103. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\NullSessionShares=7,
  104. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\RequireSecuritySignature=4,1
  105. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\RestrictNullSessAccess=4,1
  106. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\SmbServerNameHardeningLevel=4,1
  107. MACHINE\System\CurrentControlSet\Services\LanmanWorkstation\Parameters\EnablePlainTextPassword=4,0
  108. MACHINE\System\CurrentControlSet\Services\LanmanWorkstation\Parameters\EnableSecuritySignature=4,1
  109. MACHINE\System\CurrentControlSet\Services\LanmanWorkstation\Parameters\RequireSecuritySignature=4,1
  110. MACHINE\System\CurrentControlSet\Services\LDAP\LDAPClientIntegrity=4,1
  111. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\AuditNTLMInDomain=4,7
  112. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\DisablePasswordChange=4,0
  113. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\MaximumPasswordAge=4,30
  114. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\RefusePasswordChange=4,0
  115. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\RequireSignOrSeal=4,1
  116. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\RequireStrongKey=4,1
  117. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\RestrictNTLMInDomain=4,7
  118. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\SealSecureChannel=4,1
  119. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\SignSecureChannel=4,1
  120. MACHINE\System\CurrentControlSet\Services\NTDS\Parameters\LDAPServerIntegrity=4,2
  121. [Privilege Rights]
  122. SeTrustedCredManAccessPrivilege =
  123. SeNetworkLogonRight = *S-1-5-32-544
  124. SeTcbPrivilege =
  125. SeMachineAccountPrivilege = *S-1-5-32-544
  126. SeBackupPrivilege = *S-1-5-32-544
  127. SeChangeNotifyPrivilege = *S-1-5-19,*S-1-5-20,*S-1-5-32-544
  128. SeSystemtimePrivilege = *S-1-5-19,*S-1-5-32-544
  129. SeCreatePagefilePrivilege = *S-1-5-32-544
  130. SeCreateTokenPrivilege =
  131. SeDebugPrivilege = *S-1-5-32-544
  132. SeEnableDelegationPrivilege =
  133. SeRemoteShutdownPrivilege =
  134. SeAuditPrivilege = *S-1-5-19,*S-1-5-20,*S-1-5-32-544
  135. SeIncreaseQuotaPrivilege = *S-1-5-19,*S-1-5-20,*S-1-5-32-544
  136. SeIncreaseBasePriorityPrivilege = *S-1-5-32-544
  137. SeLoadDriverPrivilege = *S-1-5-32-544
  138. SeLockMemoryPrivilege =
  139. SeBatchLogonRight =
  140. SeServiceLogonRight =
  141. SeInteractiveLogonRight = *S-1-5-32-544,*S-1-5-32-545
  142. SeSecurityPrivilege = *S-1-5-32-544
  143. SeRelabelPrivilege =
  144. SeSystemEnvironmentPrivilege = *S-1-5-32-544
  145. SeProfileSingleProcessPrivilege = *S-1-5-32-544
  146. SeSystemProfilePrivilege = *S-1-5-32-544
  147. SeAssignPrimaryTokenPrivilege = *S-1-5-19,*S-1-5-20,*S-1-5-32-544
  148. SeRestorePrivilege = *S-1-5-32-544
  149. SeShutdownPrivilege = *S-1-5-32-544,*S-1-5-32-545
  150. SeSyncAgentPrivilege =
  151. SeTakeOwnershipPrivilege = *S-1-5-32-544
  152. SeDenyNetworkLogonRight = *S-1-5-32-546
  153. SeDenyBatchLogonRight = *S-1-5-32-546
  154. SeDenyServiceLogonRight = *S-1-5-32-546
  155. SeDenyInteractiveLogonRight = *S-1-5-32-546
  156. SeUndockPrivilege = *S-1-5-32-544
  157. SeManageVolumePrivilege = *S-1-5-32-544
  158. SeRemoteInteractiveLogonRight =
  159. SeDenyRemoteInteractiveLogonRight = *S-1-1-0,*S-1-5-32-546
  160. SeImpersonatePrivilege = *S-1-5-19,*S-1-5-20,*S-1-5-32-544,*S-1-5-6
  161. SeCreateGlobalPrivilege = *S-1-5-19,*S-1-5-20,*S-1-5-32-544
  162. SeTimeZonePrivilege = *S-1-5-19,*S-1-5-32-544
  163. SeCreateSymbolicLinkPrivilege = *S-1-5-32-544
  164. SeDelegateSessionUserImpersonatePrivilege = *S-1-5-32-544
  165. SeIncreaseWorkingSetPrivilege = *S-1-5-32-544
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement