

Browse to Computer Configuration > Administrative Templates > System > Credentials Delegation.Open the Local Group Policy Editor by going to your Start Menu and typing “ gpedit.msc”, right-click on the search result and choose “ Run as administrator”.Pick your poison, you only have to use one method OR the other: Local Group Policy You can bypass this security setting via Local Group Policy or via the Registry. The actual patching of the CredSSP happened in a March update, the error messages were updated in April but, in May, the Registry was changed to disallow connections between patched and unpatched systems. Local system is patched, remote system is unpatched The patch is available via your regular Windows Update. PATCH YOUR SYSTEM! Once the patch is installed and your system is rebooted, you’ll be able to connect. But, you might need to connect remotely to a system in order to patch it… I hear ya… Remote system is patched, local system is unpatched You really really really need to get all your systems patched ASAP. Workaround for temporary connectionsįirst off, let’s remember this is a WORKAROUND. By default, patched systems will not connect/permit connections from unpatched systems… that’s the issue. The RDP connection problem occurs when one system is patched and the other system is not. So, it’s important that your Windows systems, both client and server, are patched. There’s an identified vulnerability that allows remote code execution during this credential hand-over (see CVE-2018-0886 entry in the NVD for technical details). The Credential Security Support Provider (CredSSP) protocol is basically one of the ways credentials are passed between computers during an RDP connection. So what’s happening and how do we resolve this issue and get you connected again? Well, the short answer is both computers need to be updated, the long answer is that there’s a workaround… What is this whole CredSSP? It’s not just you, it surprised a bunch of people. This could be due to CredSSP encryption oracle remediation… Specifically, you get the following error:Īn authentication error has occurred. Starting with the May cumulative Windows 10/Server 2016 update, you may have run into a CredSSP error when trying to connect via Remote Desktop Protocol (RDP) to another computer. Why am I deleting everything to re-secure my system?.What do the numbers in the Registry setting mean?.


