Synchronize directory service dataID: oval:org.secpod.oval:def:23046 | Date: (C)2015-01-07 (M)2023-07-31 |
Class: COMPLIANCE | Family: windows |
This security setting determines which users and groups have the authority to synchronize all directory service data.
Fix:
(1) GPO: Computer Configuration\Windows Settings\Security Settings\Local Policies\User Rights Assignment!Synchronize directory service data
(2) WMI: root\rsop\computer#RSOP_UserPrivilegeRight#AccountList#UserRight=SeSyncAgentPrivilege and precedence=1
Platform: |
Microsoft Windows Server 2012 R2 |