Skip to main content

Remote Desktop Fails due to CredSSP Encryption Oracle Remediation

 A Windows Update released on the 8th of May 2018 disabled Oracle Based CredSPP Encryption. This renders you unable to connect to any systems which do not have the latest Windows Updates installed.

 

 
 

To fix this issue you can do two things:

1. Install the latest updates on the server. This of course cannot be done if you cannot access the server, and will require a reboot to complete any update installation.

2. Modify a setting on your local computer which will allow the oracle based encryption.

Create Batch File

FixCredSSP.bat

 reg add "HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System\CredSSP\Parameters" /f /v AllowEncryptionOracle /t REG_DWORD /d 2
Pause

 RollbackcredSSP.bat

reg add "HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System\CredSSP\Parameters" /f /v AllowEncryptionOracle /t REG_DWORD /d 1
pause

Allowing Oracle Based Encryption

First you need to open an elevated command prompt. To do that click on the 'Windows Start' button and type: cmd

Then right click on the 'Command Prompt' option that will appear

The left click on 'Run as administrator'

 
 
 

You will be prompted with a security message asking are you sure. Click 'Yes'.


 

 
 

You will now see a regular command prompt window. You need to paste in the following command and press enter to execute it:

 



It will say: The operation completed successfully.

You will now be able to connect via RDP with no issues.

 

It is highly recommended that you do update your server with the latest updates, and if you wish you can then revert the setting to allow Oracle Encryption by opening an elevated command prompt and using the following command:

RollbackCredSSP.bat

reg add "HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System\CredSSP\Parameters" /f /v AllowEncryptionOracle /t REG_DWORD /d 1

Comments

  1. Remote Desktop Fails Due To Credssp Encryption Oracle Remediation >>>>> Download Now

    >>>>> Download Full

    Remote Desktop Fails Due To Credssp Encryption Oracle Remediation >>>>> Download LINK

    >>>>> Download Now

    Remote Desktop Fails Due To Credssp Encryption Oracle Remediation >>>>> Download Full

    >>>>> Download LINK Oi

    ReplyDelete

Post a Comment

Popular posts from this blog

How to enable SSH login access to a Cisco router

This guide walks you through how to setup SSH on a Cisco Router. SSH is by far more secure then telnet. Telnet allows your passwords to be sent in plain text that anyone can see and gain access to your network. SSH is all encrypted traffic. NOTE: This should work with any Cisco router provided the Cisco IOS on the router supports ssh. Firstly is ssh enabled? router#sh ip ssh SSH Disabled - version 2.0 %Please create RSA keys to enable SSH. Authentication timeout: 60 secs; Authentication retries: 5 In this case its not, if you got a error saying that sh ip ssh is not recognized then you would know that ssh is not supported or possibly that the command is different for your platform. How to enable SSH on a Cisco 800 series router# config term router(config)#crypto key generate rsa usage-keys label router-key The name for the keys will be: router-key Choose the size of the key modulus in the range of 360 to 2048 for your

INSTALL DOT NET FRAMEWORK ON MULTIPLE SERVERS USING POWERSHELL SCRIPT

Installing .Net 4.5.2 $servers = Array of Servers foreach($server in $servers) { Write-Host “Copying the installation file” copy-item  –path “-SOURCE” –destination “ destination ” Write-Host “Installing .NET 4.5.2” Invoke-Command –Computername $server –Credentials xxxx { C:\Temp\ NET 4.5.2  /passive /norestart }

Connection failed: enforce firewall policy failed (on win 7 / 64bit)

Connection failed: enforce firewall policy failed (on win 7 / 64bit)  error: connection failed: enforce firewall policy failed client: Check point endpoint security r75 build 835002205 on win 7 / 64 bit The solution is to find driver file vsdatant.sys and copy it to system32/drivers Ref :- https://forums.checkpoint.com/forums/thread.jspa?messageID=46927