Policy definition "Windows machines should be configured to use secure communication protocols" is being wrongly applied to Windows11 machines.

Chris Lovett 35 Reputation points Microsoft Employee
2024-12-24T23:07:59.2766667+00:00

I have some windows 11 machines and they are being flagged by Microsoft Defender for Cloud saying "Windows machines should be configured to use secure communication protocols". But when I research this issue I found out that Windows 11 has secure communication protocols enabled by default so this flag is erroneous.

Who can fix this?

Windows 11
Windows 11
A Microsoft operating system designed for productivity, creativity, and ease of use.
10,418 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Daisy Zhou 27,681 Reputation points Microsoft Vendor
    2024-12-26T07:43:09.25+00:00

    Hello

    Thank you for posting in Q&A forum.

    Here are a few steps you can take to address this:

    1. Double-check that all secure communication protocols (like TLS) are indeed enabled and properly configured on your Windows 11 machines.
    2. Ensure that your machines are compliant with the latest security baselines provided by Microsoft.
    3. Make sure the Guest Configuration extension and system-assigned identity are enabled on your machines. This can help Defender for Cloud accurately assess and report the configuration.

    Reference:

    Resolving Windows servers should be configured to use secure ...

    I hope the information above is helpful.

    If you have any questions or concerns, please feel free to let us know.

    Best Regards,

    Daisy Zhou

    ============================================

    If the Answer is helpful, please click "Accept Answer" and upvote it.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.