An IT security technician is establishing baseline OS hardening parameters for new workstations deployed in an enterprise accounting department. To reduce the system's attack surface and prevent unauthorized remote modification of system configuration settings without impacting standard domain functionality, which of the following actions should the technician perform?
- Disable the Remote Registry service and set its startup type to Disabled.Cevap
- BConfigure Windows Defender Firewall to block all outgoing HTTPS traffic on port 443.
- CUse Event Viewer to clear the Security Log whenever suspicious registry access attempts occur.
- DAdjust settings within the Indexing Options Control Panel applet to block remote service permissions.
Cevap
Disable the Remote Registry service and set its startup type to Disabled.
Disabling the Remote Registry service is an essential workstation hardening practice. It ensures remote network users cannot modify system configuration keys in the Windows Registry, effectively shrinking the vulnerable surface area of the host OS.
Adım Adım Çözüm
Anahtar Kavram
Disabling Unnecessary Services during Workstation Hardening
Tahmini Süre:1m 30s