update store-passwords-using-reversible-encryption.md

This commit is contained in:
MaratMussabekov
2019-05-23 12:01:01 +05:00
committed by GitHub
parent 87d095e489
commit 6ebc057fe3

View File

@ -69,6 +69,10 @@ Enabling this policy setting allows the operating system to store passwords in a
Disable the **Store password using reversible encryption** policy setting.
>[!Note]
> After disabling the policy settings, only the new passwords will be forced to be stored using one-way encryption. Existing passwords will be stored using reversible encryption until the password is changed.
### Potential impact
If your organization uses CHAP through remote access or IAS, or Digest Authentication in IIS, you must configure this policy setting to Enabled. This presents a security risk when you apply the setting through Group Policy on a user-by-user basis because it requires the appropriate user account object to be opened in Active Directory Users and Computers.