Accounts: Rename Administrator Account
|ID: oval:org.secpod.oval:def:22460||Date: (C)2015-01-07 (M)2018-02-19|
|Class: COMPLIANCE||Family: windows|
This security setting determines whether a different account name is associated with the security identifier (SID) for the account Administrator. Renaming the well-known Administrator account makes it slightly more difficult for unauthorized persons to guess this privileged user name and password combination. The built-in local administrator account is a well-known account name that attackers will target. Microsoft recommends to choose another name for this account, and to avoid names that denote administrative or elevated access accounts. Be sure to also change the default description for the local administrator (through the Computer Management console).
Note This policy setting is not configured in the baseline, nor does Microsoft suggest a user name for the account. Suggested user names are omitted to ensure that organizations that implement this guidance will not use the same new user name in their environments.
(1) GPO: Computer Configuration\Windows Settings\Security Settings\Local Policies\Security Options!Accounts: Rename administrator account
(2) WMI: ###
|Microsoft Windows 8.1|