Malu

Fa'amalo pe fa'agata le Puipuiga Fa'amaonia i totonu Windows 10

Taumafai La Matou Mea Faigaluega Mo Le Aveeseina O Faafitauli





Fa'asalalau ileFa'afou mulimuli: Fepuari 17, 2021

Fa'amalo pe fa'agata le Puipuiga Fa'amaonia i totonu Windows 10: E fa'aogaina e le Windows Credential Guard le puipuiga malu fa'apitoa e fa'amavae mealilo ina ia na'o polokalama fa'apitoa e mafai ona maua. Ole avanoa e le faʻatagaina i nei mealilo e mafai ona taʻitaʻia ai osofaʻiga gaoi faʻamaonia, pei ole Pass-the-Hash poʻo le Pass-The-Ticket. E puipuia e le Windows Credential Guard nei osofa'iga e ala i le puipuia o fa'aupuga o upu fa'apolopolo a le NTLM, Kerberos Ticket Granting Tickets, ma fa'amaumauga o lo'o teuina e tusi talosaga e fai ma fa'ailoga fa'apitoa.



Fa'amalo pe fa'agata le Puipuiga Fa'amaonia i totonu Windows 10

E ala i le faʻaogaina o le Windows Credential Guard o loʻo tuʻuina atu foliga ma fofo:



Puipuiga o meafaigaluega
Puipuiga faʻavae faʻapitoa
Sili atu puipuiga mai fa'amata'u faifai pea

O lea ua e iloa le taua o le Credential Guard, e tatau ona e faʻatagaina lenei mea mo lau polokalama. O lea e aunoa ma le faʻaumatia o se taimi seʻi o tatou vaʻai i le Faʻafefea pe Faʻagata le Puipuiga Faʻamaonia i totonu Windows 10 faʻatasi ai ma le fesoasoani a le aʻoaʻoga o loʻo lisiina i lalo.



Anotusi[ lalafi ]

Fa'amalo pe fa'agata le Puipuiga Fa'amaonia i totonu Windows 10

Ia mautinoa e faia se nofoaga toe fa'afo'isia ne'i iai se mea e faaletonu.



Metotia 1: Fa'aaga po'o le Fa'agata Leoleo Fa'amaonia i totonu Windows 10 fa'aaoga Fa'atonu Faiga Fa'avae

Fa'aaliga: O lenei metotia e aoga pe a iai sau Windows Pro, Education, poʻo Enterprise Edtion. Mo fa'aoga Windows Home fa'amisi lenei metotia ma mulimuli i le isi.

1. Press Windows Key + R ona lolomi lea regedit ma kiliki Enter e tatala ai Fa'atonu Faiga Fa'avae.

Fa'atonu le fa'atonu regedit

2. Su'e ile ala lea:

Fa'atonuga komipiuta > Administrative Templates > System > Device Guard

3. Ia mautinoa e filifili Leoleo Leoleo nai lo i le itu taumatau pane fa'amalama kiliki-lua i luga Fa'aola le Saogalemu Fa'avae Virtualization faiga faavae.

Kiliki faalua ile Turn On Virtualization Based Security Policy

4. I le faamalama o Meatotino o le faiga faavae i luga ia mautinoa e filifili Ua mafai.

Set Turn On Virtualization Based Security to Enabled

5. O lenei mai le Filifili Platform Security Level filifili fa'alalo Secure Boot poʻo Secure Boot ma DMA Puipuiga.

Mai le Select Platform Security Level drop-down filifili Secure Boot poʻo Secure Boot ma le DMA Protection

6. Sosoo ai, mai Fa'atonuga Leoleo Fa'amaonia filifili fa'alalo Fa'aola ile loka UEFI . Afai e te mana'o e tape mamao le Credential Guard, filifili le Enabled aunoa ma le loka nai lo le Enabled with UEFI loka.

7. Ina ua uma, kiliki Talosaga sosoo ma OK.

8. Toe faʻafouina lau PC e faʻasaoina suiga.

Metotia 2: Faʻaaga poʻo le Faʻagata Puipuiga Faʻamaonia i totonu Windows 10 faʻaaoga le Resitala Faʻatonu

O le Credential Guard e faʻaogaina le faʻaogaina o foliga saogalemu e tatau ona faʻaaga muamua mai le faʻaaliga Windows ae e te leʻi mafai pe faʻamalo le Puipuiga Faʻamaonia i le Resitala Editor. Ia mautinoa e faʻaaoga se tasi o auala o loʻo lisi atu i lalo e mafai ai ona faʻaogaina le faʻaogaina o foliga saogalemu.

Fa'aopoopo le fa'aogaina o le fa'aogaina o le puipuiga e ala i le fa'aogaina o Polokalama ma Fa'aaliga

1. Press Windows Key + R ona lolomi lea appwiz.cpl ma kiliki Enter e tatala ai Polokalama ma Fa'aaliga.

type appwiz.cpl ma kiliki Enter e tatala Polokalama ma Vaega

2. Mai le faamalama agavale kiliki i luga Liliu Windows Features i luga pe tape .

liliu fa'ailoga fa'amalama i luga pe tape

3. Saili ma faalautele Hyper-V ona fa'apena fo'i fa'alautele le Hyper-V Platform.

4. I lalo o le Hyper-V Platform fa'ailoga Hyper-V Hypervisor .

I lalo o le Hyper-V Platform siaki siaki Hyper-V Hypervisor

5. Ia tusi i lalo ma fa'ailoga Fa'ailoga Tagata Fa'aaoga ma kiliki le OK.

Fa'aopoopo le fa'aogaina o le fa'aogaina o le saogalemu i se ata tuusao e ala i le fa'aogaina o le DISM

1. Press Windows Key + X ona filifili lea Fa'atonu Fa'atonu (Pule).

fa'atonu fa'atonu ma aia tatau

2. Fa'aigoa le fa'atonuga lea i le cmd e fa'aopoopo ai le Hyper-V Hypervisor ma ta'i Enter:

|_+_|

Fa'aopoopo le fa'aogaina o le fa'aogaina o le saogalemu i se ata tuusao e ala i le fa'aogaina o le DISM

3. Faʻaopoopo le faʻaogaina o le faʻaogaina o tagata faʻaoga e ala i le faʻatinoina o le poloaiga lenei:

|_+_|

Fa'aopoopo i ai le fa'aogaina o le fa'aogaina o tagata fa'aoga

4.A maeʻa, e mafai ona e tapunia le faʻatonuga vave.

Fa'amalo pe fa'agata le Puipuiga Fa'amaonia i totonu Windows 10

1. Press Windows Key + R ona lolomi lea regedit ma kiliki Enter e tatala ai Fa'atonu Resitala.

Fa'atonu le fa'atonu regedit

2. Su'e i le ki fa'amaumauga nei:

HKEY_LOCAL_MACHINESystemCurrentControlSetControlDeviceGuard

3. Kiliki taumatau i luga Deviceguard ona filifili lea Fou > DWORD (32-bit) Tau.

Kiliki taumatau ile DeviceGuard ona filifili lea ole New DWORD (32-bit) Value

4. Fa'aigoa le DWORD fou lea fou EnableVirtualizationBasedSecurity ma kiliki Enter.

Ta'u le DWORD fou fou lea e pei o EnableVirtualizationBasedSecurity ma ta Enter

5. Kiliki faalua ile EnableVirtualizationBasedSecurity DWORD ona sui lea o lona tau ile:

Ina ia fa'aagaoioi le Saogalemu Fa'avae Fa'atekonolosi: 1
Ina ia Fa'agata le Saogalemu Fa'avae Virtualization: 0

Ina ia fa'aagaoioi le Puipuiga fa'avae Fa'atekonolosi, suia le tau o le DWORD i le 1

6.Now toe kiliki-i luga ole DeviceGuard ona filifili lea Fou > DWORD (32-bit) Tau ma faaigoa lenei DWORD o ManaomiaPlatformSecurityFeatures ona kiliki lea Enter.

Ta'u le DWORD e pei o RequirePlatformSecurityFeatures ona kiliki lea o le Enter

7. Kiliki faalua ile RequirePlatformSecurityFeatures DWORD ma suia lona taua i le 1 e faʻaaoga ai le Secure Boot naʻo seti i le 3 e faʻaoga Secure Boot ma DMA puipuiga.

Suia

8. Fa'asaga nei i le ki fa'amaumauga nei:

HKEY_LOCAL_MACHINESystemCurrentControlSetControlLSA

9. Kiliki taumatau ile LSA ona filifili lea Fou > DWORD (32-bit) Tau ona faaigoa lea o le DWORD lea LsaCfgFlags ma kiliki Enter.

Kiliki-matau ile LSA ona filifili lea o le New ona DWORD (32-bit) Value

10. Kiliki faalua ile LsaCfgFlags DWORD ma sui lona tau e tusa ai ma:

Fa'agata Leoleo Fa'amaonia: 0
Fa'aaga le Puipuiga Fa'amaonia ile loka UEFI: 1
Fa'aaga le Puipuiga Fa'amaonia e aunoa ma se loka: 2

Kiliki faalua ile LsaCfgFlags DWORD ma sui lona tau e tusa ai ma

11. A mae'a, tapuni le Resitala Fa'atonu.

Fa'agata Leoleo Fa'amaonia i totonu Windows 10

Afai na mafai le Leoleo Faʻamaonia e aunoa ma le UEFI Lock ona e mafai lea Fa'agata Windows Credential Guard faaaogaina o le Puipuiga Meafaigaluega ma Puipuiga Fa'amaonia meafaigaluega saunia meafaigaluega poʻo le auala lenei:

1. Press Windows Key + R ona lolomi lea regedit ma kiliki Enter e tatala ai Fa'atonu Resitala.

Fa'atonu le fa'atonu regedit

2. Su'e ma tape le resitara ki nei:

|_+_|

Ta'e le Windows Credential Guard

3. Ave'ese suiga ole Windows Credential Guard EFI ile fa'aogaina ole bcdedit . Oomi le Windows Key + X ona filifili lea Fa'atonu Fa'atonu (Pule).

fa'atonu fa'atonu ma aia tatau

4.Type le poloaiga lenei i le cmd ma ta Enter:

|_+_|

5. Ina ua maeʻa, tapuni le faʻatonuga vave ma toe faʻafou lau PC.

6. Talia le vave e tape Windows Credential Guard.

Fautuaina: