Quantcast
Channel: Remote Desktop Services (Terminal Services) forum
Viewing all articles
Browse latest Browse all 1106

Disable TLS 1.0 on a FIPS enabled Windows 2012 R2 server

$
0
0

We are disabling TLS 1.0 per the standard recommendation via keys:

HKLM:\SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Protocols\TLS 1.0\Client

HKLM:\SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Protocols\TLS 1.0\Server


What are seeing is very odd.  On all systems that are not FIPS enabled, RDP (port 3389) is only accepting TLS 1.2 connections (this is per our Nessus scans).  On all systems thatare FIPS enabled, RDP is accepting TLS 1.0-1.2 connections.  



The reg keys are the same.  Is this a known issue with FIPS + RDP + these protocols?  Can someone provide any documentation?



Thanks much

Blake



Viewing all articles
Browse latest Browse all 1106

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>