HOWTO: Regulate Network Access to the Windows NT Registry |
Q155363
This article describes new functionality in Windows NT 4.0 that provides a system administrator with the ability to secure remote registry access.
Windows NT supports accessing a remote registry via the Registry Editor and
also through the RegConnectRegistry() Win32 API call. The default security
on the registry allows for easy use and configuration by users in a
network. In some cases, it may be useful to regulate who has remote access
to the registry, in order to prevent potential security problems.
The security on the following registry key dictates which users/groups
can access the registry remotely:
HKEY_LOCAL_MACHINE\
SYSTEM\
CurrentControlSet\
Control\
SecurePipeServers\
Winreg
If this key does not exist, remote access is not restricted, and only the
underlying security on the individual keys control access.
HKEY_LOCAL_MACHINE\
SYSTEM\
CurrentControlSet\
Control\
SecurePipeServers\
Winreg\
AllowedPaths\
Machine (entry of type REG_MULTI_SZ)
The "AllowedPaths" registry key contains multiple strings, which represent
registry entries that can be read by Everyone. This allows specific system
functions, such as checking printer status, to work correctly regardless of
how access is restricted via the winreg registry key. The default security
on the "AllowedPaths" registry key only grants Administrators the ability
to manage these paths.
Q146906 How to Secure Performance Data in Windows NT
Additional query words:
Keywords : kbKernBase kbOSWin2000 kbRegistry kbSecurity kbDSupport kbGrpKernBase
Issue type : kbhowto
Technology : kbWinNTsearch kbWinNTWsearch kbWinNTW400 kbWinNTW400search kbWinNT400search kbwin2kAdvSer kbwin2kAdvSerSearch kbwin2kS kbWinNTSsearch kbWinNTS400search kbWinNTS400 kbwin2kSSearch kbwin2kSearch kbwin2kProSearch kbwin2kPro
|
Last Reviewed: October 20, 2000 © 2001 Microsoft Corporation. All rights reserved. Terms of Use. |