update store-passwords-using-reversible-encryption.md

This commit is contained in:
MaratMussabekov
2019-05-23 12:01:01 +05:00
committed by GitHub
parent 87d095e489
commit 6ebc057fe3

View File

@ -69,6 +69,10 @@ Enabling this policy setting allows the operating system to store passwords in a
Disable the **Store password using reversible encryption** policy setting. Disable the **Store password using reversible encryption** policy setting.
>[!Note]
> After disabling the policy settings, only the new passwords will be forced to be stored using one-way encryption. Existing passwords will be stored using reversible encryption until the password is changed.
### Potential impact ### Potential impact
If your organization uses CHAP through remote access or IAS, or Digest Authentication in IIS, you must configure this policy setting to Enabled. This presents a security risk when you apply the setting through Group Policy on a user-by-user basis because it requires the appropriate user account object to be opened in Active Directory Users and Computers. If your organization uses CHAP through remote access or IAS, or Digest Authentication in IIS, you must configure this policy setting to Enabled. This presents a security risk when you apply the setting through Group Policy on a user-by-user basis because it requires the appropriate user account object to be opened in Active Directory Users and Computers.