Advertisement
novakatten

Windows Secure Policy INI

Mar 15th, 2017
306
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 10.42 KB | None | 0 0
  1. [Unicode]
  2. Unicode=yes
  3. [System Access]
  4. MinimumPasswordAge = 14
  5. MaximumPasswordAge = 30
  6. MinimumPasswordLength = 12
  7. PasswordComplexity = 1
  8. PasswordHistorySize = 10
  9. LockoutBadCount = 3
  10. ResetLockoutCount = 15
  11. LockoutDuration = 15
  12. ForceLogoffWhenHourExpire = 1
  13. NewAdministratorName = "rotartsinimda"
  14. NewGuestName = "tseug"
  15. ClearTextPassword = 0
  16. LSAAnonymousNameLookup = 0
  17. EnableAdminAccount = 0
  18. EnableGuestAccount = 0
  19. [System Log]
  20. AuditLogRetentionPeriod = 1
  21. RetentionDays = 30
  22. RestrictGuestAccess = 1
  23. [Security Log]
  24. AuditLogRetentionPeriod = 1
  25. RetentionDays = 30
  26. RestrictGuestAccess = 1
  27. [Application Log]
  28. AuditLogRetentionPeriod = 1
  29. RetentionDays = 30
  30. RestrictGuestAccess = 1
  31. [Event Audit]
  32. AuditSystemEvents = 3
  33. AuditLogonEvents = 3
  34. AuditObjectAccess = 3
  35. AuditPrivilegeUse = 3
  36. AuditPolicyChange = 3
  37. AuditAccountManage = 3
  38. AuditProcessTracking = 3
  39. AuditDSAccess = 3
  40. AuditAccountLogon = 3
  41. [Kerberos Policy]
  42. MaxTicketAge = 10
  43. MaxRenewAge = 10
  44. MaxServiceAge = 600
  45. MaxClockSkew = 5
  46. TicketValidateClient = 1
  47. [Registry Values]
  48. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Setup\RecoveryConsole\SecurityLevel=4,0
  49. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Setup\RecoveryConsole\SetCommand=4,0
  50. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\AllocateCDRoms=1,"1"
  51. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\AllocateDASD=1,"0"
  52. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\AllocateFloppies=1,"1"
  53. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\CachedLogonsCount=1,"1"
  54. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\ForceUnlockLogon=4,0
  55. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\PasswordExpiryWarning=4,7
  56. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorAdmin=4,1
  57. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorUser=4,0
  58. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\DisableCAD=4,0
  59. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\DontDisplayLastUserName=4,1
  60. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\DontDisplayLockedUserId=4,3
  61. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\EnableInstallerDetection=4,1
  62. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA=4,1
  63. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\EnableSecureUIAPaths=4,1
  64. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\EnableUIADesktopToggle=4,0
  65. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\EnableVirtualization=4,1
  66. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\FilterAdministratorToken=4,1
  67. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\InactivityTimeoutSecs=4,600
  68. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\Kerberos\Parameters\SupportedEncryptionTypes=4,2147483632
  69. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\LegalNoticeCaption=1,"#KeepOutBitchesThisIsYourWarning!"
  70. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\LegalNoticeText=7,This computer has been secured by some really awesome people. We did a good job"," so if you're trying to get in you may as well give up now. Thanks though!
  71. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\MaxDevicePasswordFailedAttempts=4,3
  72. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\NoConnectedUser=4,3
  73. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\PromptOnSecureDesktop=4,1
  74. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\ScForceOption=4,0
  75. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\ShutdownWithoutLogon=4,0
  76. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\UndockWithoutLogon=4,0
  77. MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\ValidateAdminCodeSignatures=4,1
  78. MACHINE\Software\Policies\Microsoft\Cryptography\ForceKeyProtection=4,2
  79. MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\AuthenticodeEnabled=4,1
  80. MACHINE\System\CurrentControlSet\Control\Lsa\AuditBaseObjects=4,1
  81. MACHINE\System\CurrentControlSet\Control\Lsa\CrashOnAuditFail=4,1
  82. MACHINE\System\CurrentControlSet\Control\Lsa\DisableDomainCreds=4,1
  83. MACHINE\System\CurrentControlSet\Control\Lsa\EveryoneIncludesAnonymous=4,0
  84. MACHINE\System\CurrentControlSet\Control\Lsa\FIPSAlgorithmPolicy\Enabled=4,1
  85. MACHINE\System\CurrentControlSet\Control\Lsa\ForceGuest=4,0
  86. MACHINE\System\CurrentControlSet\Control\Lsa\FullPrivilegeAuditing=3,1
  87. MACHINE\System\CurrentControlSet\Control\Lsa\LimitBlankPasswordUse=4,1
  88. MACHINE\System\CurrentControlSet\Control\Lsa\LmCompatibilityLevel=4,5
  89. MACHINE\System\CurrentControlSet\Control\Lsa\MSV1_0\allownullsessionfallback=4,0
  90. MACHINE\System\CurrentControlSet\Control\Lsa\MSV1_0\AuditReceivingNTLMTraffic=4,2
  91. MACHINE\System\CurrentControlSet\Control\Lsa\MSV1_0\ClientAllowedNTLMServers=7,
  92. MACHINE\System\CurrentControlSet\Control\Lsa\MSV1_0\NTLMMinClientSec=4,537395200
  93. MACHINE\System\CurrentControlSet\Control\Lsa\MSV1_0\NTLMMinServerSec=4,537395200
  94. MACHINE\System\CurrentControlSet\Control\Lsa\MSV1_0\RestrictReceivingNTLMTraffic=4,1
  95. MACHINE\System\CurrentControlSet\Control\Lsa\MSV1_0\RestrictSendingNTLMTraffic=4,1
  96. MACHINE\System\CurrentControlSet\Control\Lsa\NoLMHash=4,1
  97. MACHINE\System\CurrentControlSet\Control\Lsa\pku2u\AllowOnlineID=4,0
  98. MACHINE\System\CurrentControlSet\Control\Lsa\RestrictAnonymous=4,1
  99. MACHINE\System\CurrentControlSet\Control\Lsa\RestrictAnonymousSAM=4,1
  100. MACHINE\System\CurrentControlSet\Control\Lsa\SCENoApplyLegacyAuditPolicy=4,1
  101. MACHINE\System\CurrentControlSet\Control\Lsa\SubmitControl=4,0
  102. MACHINE\System\CurrentControlSet\Control\Lsa\UseMachineId=4,0
  103. MACHINE\System\CurrentControlSet\Control\Print\Providers\LanMan Print Services\Servers\AddPrinterDrivers=4,1
  104. MACHINE\System\CurrentControlSet\Control\SecurePipeServers\Winreg\AllowedExactPaths\Machine=7,
  105. MACHINE\System\CurrentControlSet\Control\SecurePipeServers\Winreg\AllowedPaths\Machine=7,
  106. MACHINE\System\CurrentControlSet\Control\Session Manager\Kernel\ObCaseInsensitive=4,0
  107. MACHINE\System\CurrentControlSet\Control\Session Manager\Memory Management\ClearPageFileAtShutdown=4,1
  108. MACHINE\System\CurrentControlSet\Control\Session Manager\ProtectionMode=4,1
  109. MACHINE\System\CurrentControlSet\Control\Session Manager\SubSystems\optional=7,Posix
  110. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\AutoDisconnect=4,10
  111. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\EnableForcedLogOff=4,1
  112. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\EnableS4U2SelfForClaims=4,1
  113. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\EnableSecuritySignature=4,1
  114. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\NullSessionPipes=7,
  115. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\NullSessionShares=7,
  116. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\RequireSecuritySignature=4,1
  117. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\RestrictNullSessAccess=4,1
  118. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\SmbServerNameHardeningLevel=4,2
  119. MACHINE\System\CurrentControlSet\Services\LanmanWorkstation\Parameters\EnablePlainTextPassword=4,1
  120. MACHINE\System\CurrentControlSet\Services\LanmanWorkstation\Parameters\EnableSecuritySignature=4,1
  121. MACHINE\System\CurrentControlSet\Services\LanmanWorkstation\Parameters\RequireSecuritySignature=4,1
  122. MACHINE\System\CurrentControlSet\Services\LDAP\LDAPClientIntegrity=4,2
  123. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\AuditNTLMInDomain=4,7
  124. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\DCAllowedNTLMServers=7,
  125. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\DisablePasswordChange=4,1
  126. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\MaximumPasswordAge=4,30
  127. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\RefusePasswordChange=4,1
  128. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\RequireSignOrSeal=4,1
  129. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\RequireStrongKey=4,1
  130. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\RestrictNTLMInDomain=4,7
  131. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\SealSecureChannel=4,1
  132. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\SignSecureChannel=4,1
  133. MACHINE\System\CurrentControlSet\Services\NTDS\Parameters\LDAPServerIntegrity=4,2
  134. [Privilege Rights]
  135. SeTrustedCredManAccessPrivilege =
  136. SeTcbPrivilege =
  137. SeMachineAccountPrivilege =
  138. SeIncreaseQuotaPrivilege = *S-1-5-32-544
  139. SeInteractiveLogonRight = *S-1-5-32-545,*S-1-5-32-547,*S-1-5-32-551,*S-1-5-32-544,__vmware__
  140. SeRemoteInteractiveLogonRight = *S-1-5-32-544
  141. SeBackupPrivilege = *S-1-5-32-544
  142. SeChangeNotifyPrivilege = *S-1-5-32-547,*S-1-5-32-551,*S-1-5-32-544
  143. SeTimeZonePrivilege = *S-1-5-32-544
  144. SeSystemtimePrivilege = *S-1-5-32-544
  145. SeCreatePagefilePrivilege =
  146. SeNetworkLogonRight = *S-1-5-32-551,*S-1-5-32-544
  147. SeCreateTokenPrivilege =
  148. SeCreateGlobalPrivilege = *S-1-5-6,*S-1-5-20,*S-1-5-19
  149. SeCreatePermanentPrivilege =
  150. SeCreateSymbolicLinkPrivilege = *S-1-5-32-544
  151. SeDebugPrivilege = *S-1-5-32-544
  152. SeDenyNetworkLogonRight = *S-1-5-32-545,Guest
  153. SeDenyBatchLogonRight = Guest,HomeGroupUser$
  154. SeDenyServiceLogonRight = Guest,HomeGroupUser$
  155. SeDenyInteractiveLogonRight = Guest,HomeGroupUser$
  156. SeDenyRemoteInteractiveLogonRight = *S-1-5-32-545,Guest,HomeGroupUser$
  157. SeEnableDelegationPrivilege =
  158. SeRemoteShutdownPrivilege =
  159. SeAuditPrivilege = *S-1-5-6,*S-1-5-20,*S-1-5-19
  160. SeImpersonatePrivilege = *S-1-5-6,*S-1-5-20,*S-1-5-19,*S-1-5-32-544
  161. SeIncreaseWorkingSetPrivilege = *S-1-5-32-545,*S-1-5-32-544
  162. SeIncreaseBasePriorityPrivilege = *S-1-5-32-544
  163. SeLoadDriverPrivilege = *S-1-5-32-544
  164. SeLockMemoryPrivilege =
  165. SeBatchLogonRight = *S-1-5-32-544
  166. SeServiceLogonRight = *S-1-5-80-0
  167. SeSecurityPrivilege = *S-1-5-32-544
  168. SeRelabelPrivilege =
  169. SeSystemEnvironmentPrivilege = *S-1-5-32-544
  170. SeManageVolumePrivilege = *S-1-5-32-544
  171. SeProfileSingleProcessPrivilege = *S-1-5-32-544
  172. SeSystemProfilePrivilege = *S-1-5-80-3139157870-2983391045-3678747466-658725712-1809340420,*S-1-5-32-544
  173. SeUndockPrivilege = *S-1-5-32-544
  174. SeAssignPrimaryTokenPrivilege = *S-1-5-20,*S-1-5-19
  175. SeRestorePrivilege = *S-1-5-32-544
  176. SeShutdownPrivilege = *S-1-5-32-545,*S-1-5-32-544
  177. SeSyncAgentPrivilege =
  178. SeTakeOwnershipPrivilege = *S-1-5-32-544
  179. [Version]
  180. signature="$CHICAGO$"
  181. Revision=1
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement