Store passwords using reversible encryption - Fixlet explanation

Looking at the CIS Benchmark Fixlet we find that it looks for two different values:
a) Registry key : value “F” of registry key “HKLM\SECURITY\SAM\Domains\Account” (the position related to storing the passwords)
b) RSoP RSOP_SecuritySettingBoolean WHERE KeyName=%22ClearTextPassword%22 AND precedence=1"

I need to know, in both cases, which are de possible values and their meaning.

Thank you very much jgstew :thumbsup:

1 Like