Password stored using reversible encryption (Windows)

Module: Password Strength

Supported Platforms: Windows 2000, Windows 2003, Windows 2008

This check reports if the "store password using reversible encryption for all users" setting is enabled in the Password Policy. The check also reports the domain users whose "Password stored using reversible encryption" setting is enabled.

The following table lists the error messages for the check.

Table: Error messages for Password stored using reversible encryption

Message String ID and Category

Platform and Message Numeric ID

Message Title and Description

Additional Information

String ID: ESM_REVERSIBLE_ENCRYPTION

Category: Policy Compliance

  • Windows 2000 (105344)

  • Windows 2003 (205344)

  • Windows 2008 (248344)

Title: Password stored using reversible encryption

Description:The password for this account is stored using an easily reversible encryption.

Severity: yellow-2

Correctable: false

Snapshot Updatable: false

Template Updatable: false

Information Field Format: [%s]

String ID: ESM_REVERSIBLE_ENCRYPTION_ENABLED

Category: Policy Compliance

  • Windows 2000 (105346)

  • Windows 2003 (205346)

  • Windows 2008 (248346)

Title: Reversible Encryption enabled in Password Policy

Description:The setting "store password using reversible encryption for all users" is enabled.

Severity: yellow-2

Correctable: false

Snapshot Updatable: false

Template Updatable: false

Information Field Format: [%s]