Leaked source code of windows server 2003
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

111 lines
14 KiB

  1. ��[Unicode]
  2. Unicode=yes
  3. [Version]
  4. signature="$CHICAGO$"
  5. Revision=1
  6. [Profile Description]
  7. Description=A superset of securews. Provides further restrictions on LanManager auth and further requirements for the encryption and signing of secure channel and SMB data. In order to apply hisecws to a member,all DC's that contain accounts of all users that logon to the client must be running NT4 SP4 or higher. See online help for further info.
  8. [System Access]
  9. MinimumPasswordAge = 2
  10. MaximumPasswordAge = 42
  11. MinimumPasswordLength = 8
  12. PasswordComplexity = 1
  13. LockoutBadCount = 5
  14. ResetLockoutCount = 25
  15. LockoutDuration = -1
  16. NewAdministratorName = "Administrator"
  17. NewGuestName = "Jimbo"
  18. ClearTextPassword = 0
  19. LSAAnonymousNameLookup = 0
  20. EnableAdminAccount = 0
  21. EnableGuestAccount = 0
  22. [System Log]
  23. RestrictGuestAccess = 1
  24. [Security Log]
  25. MaximumLogSize = 19456
  26. AuditLogRetentionPeriod = 0
  27. RestrictGuestAccess = 1
  28. [Application Log]
  29. RestrictGuestAccess = 1
  30. [Event Audit]
  31. AuditSystemEvents = 3
  32. AuditLogonEvents = 3
  33. AuditObjectAccess = 3
  34. AuditPrivilegeUse = 3
  35. AuditPolicyChange = 3
  36. AuditAccountManage = 3
  37. AuditProcessTracking = 0
  38. AuditAccountLogon = 2
  39. [Registry Values]
  40. machine\system\currentcontrolset\services\netlogon\parameters\signsecurechannel=4,1
  41. machine\system\currentcontrolset\services\netlogon\parameters\sealsecurechannel=4,1
  42. machine\system\currentcontrolset\services\netlogon\parameters\requirestrongkey=4,1
  43. machine\system\currentcontrolset\services\netlogon\parameters\requiresignorseal=4,1
  44. machine\system\currentcontrolset\services\netlogon\parameters\maximumpasswordage=4,30
  45. machine\system\currentcontrolset\services\netlogon\parameters\disablepasswordchange=4,0
  46. machine\system\currentcontrolset\services\ldap\ldapclientintegrity=4,1
  47. machine\system\currentcontrolset\services\lanmanworkstation\parameters\requiresecuritysignature=4,0
  48. machine\system\currentcontrolset\services\lanmanworkstation\parameters\enablesecuritysignature=4,1
  49. machine\system\currentcontrolset\services\lanmanworkstation\parameters\enableplaintextpassword=4,0
  50. machine\system\currentcontrolset\services\lanmanserver\parameters\restrictnullsessaccess=4,1
  51. machine\system\currentcontrolset\services\lanmanserver\parameters\requiresecuritysignature=4,1
  52. machine\system\currentcontrolset\services\lanmanserver\parameters\enablesecuritysignature=4,1
  53. machine\system\currentcontrolset\services\lanmanserver\parameters\enableforcedlogoff=4,1
  54. machine\system\currentcontrolset\services\lanmanserver\parameters\autodisconnect=4,15
  55. machine\system\currentcontrolset\control\session manager\protectionmode=4,1
  56. machine\system\currentcontrolset\control\session manager\memory management\clearpagefileatshutdown=4,1
  57. machine\system\currentcontrolset\control\session manager\kernel\obcaseinsensitive=4,1
  58. machine\system\currentcontrolset\control\print\providers\lanman print services\servers\addprinterdrivers=4,1
  59. machine\system\currentcontrolset\control\lsa\submitcontrol=4,0
  60. machine\system\currentcontrolset\control\lsa\restrictanonymoussam=4,1
  61. machine\system\currentcontrolset\control\lsa\restrictanonymous=4,1
  62. machine\system\currentcontrolset\control\lsa\nolmhash=4,1
  63. machine\system\currentcontrolset\control\lsa\msv1_0\ntlmminserversec=4,0
  64. machine\system\currentcontrolset\control\lsa\msv1_0\ntlmminclientsec=4,0
  65. machine\system\currentcontrolset\control\lsa\lmcompatibilitylevel=4,5
  66. machine\system\currentcontrolset\control\lsa\limitblankpassworduse=4,1
  67. machine\system\currentcontrolset\control\lsa\fullprivilegeauditing=3,0
  68. machine\system\currentcontrolset\control\lsa\everyoneincludesanonymous=4,0
  69. machine\system\currentcontrolset\control\lsa\disabledomaincreds=4,1
  70. machine\system\currentcontrolset\control\lsa\crashonauditfail=4,0
  71. machine\software\microsoft\windows\currentversion\policies\system\undockwithoutlogon=4,0
  72. machine\software\microsoft\windows\currentversion\policies\system\legalnoticetext=7,Hello world. you are trying ot log on!,oh no!,heehee.. just a test -steven
  73. machine\software\microsoft\windows\currentversion\policies\system\legalnoticecaption=1,""
  74. machine\software\microsoft\windows\currentversion\policies\system\dontdisplaylastusername=4,1
  75. machine\software\microsoft\windows\currentversion\policies\system\disablecad=4,0
  76. machine\software\microsoft\windows nt\currentversion\winlogon\scremoveoption=1,"1"
  77. machine\software\microsoft\windows nt\currentversion\winlogon\passwordexpirywarning=4,14
  78. machine\software\microsoft\windows nt\currentversion\winlogon\forceunlocklogon=4,1
  79. machine\software\microsoft\windows nt\currentversion\winlogon\cachedlogonscount=1,"0"
  80. machine\software\microsoft\windows nt\currentversion\winlogon\allocatefloppies=1,"0"
  81. machine\software\microsoft\windows nt\currentversion\winlogon\allocatedasd=1,"0"
  82. machine\software\microsoft\windows nt\currentversion\winlogon\allocatecdroms=1,"0"
  83. machine\software\microsoft\windows nt\currentversion\setup\recoveryconsole\setcommand=4,0
  84. machine\software\microsoft\windows nt\currentversion\setup\recoveryconsole\securitylevel=4,0
  85. machine\software\microsoft\driver signing\policy=3,2
  86. [Group Membership]
  87. *S-1-5-32-544__Memberof =
  88. *S-1-5-32-544__Members = *S-1-5-21-397955417-626881126-188441444-512,*S-1-5-21-1482476501-764733703-839522115-500
  89. *S-1-5-32-547__Memberof =
  90. *S-1-5-32-547__Members =
  91. schan-dev\fake__Memberof =
  92. schan-dev\fake__Members = *S-1-5-21-397955417-626881126-188441444-3065965
  93. [Privilege Rights]
  94. sechangenotifyprivilege = *S-1-5-32-547,*S-1-5-32-545
  95. secreatetokenprivilege =
  96. sedenynetworklogonright =
  97. seenabledelegationprivilege =
  98. seincreasequotaprivilege = *S-1-5-32-544,*S-1-5-20,*S-1-5-19
  99. seinteractivelogonright = *S-1-5-32-545
  100. [Registry Keys]
  101. 1="machine\hardware\acpi\dsdt", 0, "D:PAR(A;CI;KA;;;BA)(A;CIIO;KA;;;CO)(A;CI;KA;;;SY)(A;CI;KR;;;BU)"
  102. 2="machine\hardware\acpi\facs", 0, "D:PAR(A;CI;KA;;;BA)(A;CIIO;KA;;;CO)(A;CI;KA;;;SY)(A;CI;KR;;;BU)"
  103. 3="users", 0, "D:PAR(A;CI;KA;;;BA)(A;CIIO;KA;;;CO)(A;CI;KA;;;SY)(A;CI;KR;;;BU)"
  104. [File Security]
  105. 1="c:\slick", 0, "D:PAR(A;OICI;FA;;;BA)(A;OICIIO;FA;;;CO)(A;OICI;FA;;;SY)(A;OICI;0x1200a9;;;BU)"
  106. [Service General Setting]
  107. 1="appmgmt", 3, "D:(A;;CCLCSWLORC;;;AU)(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;BA)(A;;CCLCSWLORC;;;PU)(A;;CCLCSWRPLO;;;IU)(A;;CCLCSWLO;;;BU)S:(AU;FA;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;WD)"
  108. 2="dhcp", 3, "D:(A;;CCLCSWLOCRRC;;;AU)(A;;CCLCSWRPLOCRRC;;;PU)(A;;CCDCLCSWRPWPDTLOCRRC;;;NO)(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;BA)(A;;CCLCSWRPWPDTLOCRRC;;;SY)S:(AU;FA;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;WD)"
  109. 3="dnscache", 2, "D:(A;;CCLCSWLOCRRC;;;AU)(A;;CCLCSWRPLOCRRC;;;PU)(A;;CCDCLCSWRPWPDTLOCRRC;;;NO)(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;BA)(A;;CCLCSWRPWPDTLOCRRC;;;SY)S:(AU;FA;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;WD)"
  110. 4="trksvr", 2, "D:AR(D;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;BA)(A;;CCLCSWLOCRRC;;;AU)(A;;CCLCSWRPWPDTLOCRRC;;;PU)(A;;CCLCSWRPWPDTLOCRRC;;;SY)S:(AU;FA;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;WD)"
  111. 5="trkwks", 2, "D:(A;;CCLCSWLOCRRC;;;AU)(A;;CCLCSWRPLOCRRC;;;PU)(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;BA)(A;;CCLCSWRPWPDTLOCRRC;;;SY)S:(AU;FA;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;WD)"