Secure channel
• Q128489: secure channel entre DC de
domaines différents, compte machine utilisé
• Renforcer le canal de communication
– HKLM\SYSTEM\CurrentControlSet\Services\NetLogon\
Parameters\SealSecureChannel\REG_DWORD:1
– HKLM\SYSTEM\CurrentControlSet\Services\NetLogon\
Parameters\SignSecureChannel=REG_DWORD:1
– HKLM\SYSTEM\CurrentControlSet\Services\NetLogon\
Parameters\RequireSignOrSeal=REG_DWORD:1
– HKLM\SYSTEM\CurrentControlSet\Services\NetLogon\
RequireStrongKey=REG_DWORD:1