Share via

is this document outdated?

Gustavo BONASSO 21 Reputation points
2023-06-23T12:58:52.5333333+00:00

hi, i see this document:

https://learn.microsoft.com/en-us/windows/win32/com/legacyauthenticationlevel

it says it is not recommended to modify LegacyAuthenticationLevel via registry, and better do it via Process-Wide Security.

thing is after CVE-2021-26414 and KB5004442

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-26414

https://support.microsoft.com/en-us/topic/kb5004442-manage-changes-for-windows-dcom-server-security-feature-bypass-cve-2021-26414-f1400b52-c141-43d2-941e-37ed901c769c

the value is set to PacketIntegrity by default

my question is, is it still not recommended to set it via registry?

thanks,

Windows for business | Windows Server | User experience | Other
0 comments No comments

1 answer

Sort by: Most helpful
  1. Anonymous
    2023-10-19T07:53:57.3866667+00:00

    Hi,

    According to KB5004442, you need to set the registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat\RequireIntegrityActivationAuthenticationLevel however it is still not recommended to change the value LegacyAuthenticationLevel.

    Best Regards,

    Ian Xue


    If the Answer is helpful, please click "Accept Answer" and upvote it.

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    Was this answer helpful?

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.