Bonolo

Numella kapa Thibela Balebeli ba Tšireletso ho Windows 10

Leka Sesebelisoa Sa Rona Bakeng Sa Ho Tlosa Mathata





E ngotsoe kaE qetetse ho nchafatsoa: Hlakola 17, 2021

Numella kapa Thibela Balebeli ba Tšireletso ho Windows 10: Windows Credential Guard e sebelisa ts'ireletso e thehiloeng ho virtualization ho arola liphiri e le hore feela software e khethehileng e ka li fihlela. Ho fihlella ho sa lumelloeng ha liphiri tsena ho ka lebisa ho litlhaselo tsa bosholu ba bopaki, tse kang Pass-the-Hash kapa Pass-The-Ticket. Windows Credential Guard e thibela litlhaselo tsena ka ho sireletsa li-hashes tsa password tsa NTLM, Litekete tsa ho fana ka Litekete tsa Kerberos, le lintlha tse bolokiloeng ke lits'ebetso joalo ka lintlha tsa domain.



Numella kapa Thibela Balebeli ba Tšireletso ho Windows 10

Ka ho nolofalletsa Windows Credential Guard likarolo le litharollo tse latelang li fanoa:



Ts'ireletso ea Hardware
Tšireletso e thehiloeng ho Virtualization
Tšireletso e betere kgahlanong le ditshoso tse tswellang tse tsoetseng pele

Joale o tseba bohlokoa ba Credential Guard, o tlameha ho nolofalletsa sena bakeng sa sistimi ea hau. Kahoo ntle le ho senya nako a re boneng Mokhoa oa ho Nolofatsa Kapa Ho Thibela Balebeli ba Bopaki ho Windows 10 ka thuso ea thuto e thathamisitsoeng ka tlase.



Litaba[ pata ]

Numella kapa Thibela Balebeli ba Tšireletso ho Windows 10

Etsa bonnete ba ho theha sebaka sa ho khutlisa feela haeba ho na le ntho e sa tsamaeeng hantle.



Mokhoa oa 1: bulela kapa Thibela Balebeli ba Tšireletso ho Windows 10 sebelisa Sehlopha sa Leano la Sehlopha

Hlokomela: Mokhoa ona o sebetsa feela haeba u na le Windows Pro, Education, kapa Enterprise Edtion. Bakeng sa basebelisi ba mofuta oa Windows Home, tlola mokhoa ona ebe o latela o latelang.

1.Tobetsa Windows Key + R ebe o thaepa regedit ebe o otla Enter ho bula Mohlophisi oa Leano la Sehlopha.

Sebelisa taelo ea regedit

2. Tsamaea ka tsela e latelang:

Tlhophiso ya Khomphuta > Dithempleite tsa Tsamaiso > Sistimi > Tshireletso ya Sesebediswa

3.Etsa bonnete ba ho khetha Molebeli oa Sesebelisoa ho feta fensetereng e nepahetseng, tobetsa habeli ho eona Bulela Virtualization Thehiloeng Tšireletso leano.

Tobetsa habeli ho Bulela Leano la Tšireletso la Virtualization Based Based

4.Ka fensetere ea Properties ea leano le ka holimo etsa bonnete ba hore u khetha E lumelletsoe.

Beha Bulela Virtualization Thehiloeng Tšireletso ho Enabled

5. Joale ho tloha ho Khetha Boemo ba Tšireletso ea Platform khetho ea ho theoha Boot e sireletsehileng kapa Boot e sireletsehileng le DMA Tshireletso.

Ho tloha ho Khetha ho theoha ha Boemo ba Tšireletso ea Platform khetha Secure Boot kapa Secure Boot le Tšireletso ea DMA

6.E latelang, ho tloha Tlhophiso ea Balebeli ba Tšireletso khetho ea ho theoha E lumelletsoe ka senotlolo sa UEFI . Haeba u batla ho tima Credential Guard u le hole, khetha E nolofalitsoe ntle le senotlolo ho fapana le E lumelletsoe ka senotlolo sa UEFI.

7.Ha u qetile, tobetsa Etsa kopo e lateloa ke OK.

8.Reboot PC ea hau ho boloka liphetoho.

Mokhoa oa 2: bulela kapa Thibela Balebeli ba Tšireletso ho Windows 10 sebelisa Registry Editor

Credential Guard e sebelisa likarolo tsa ts'ireletso tse ipapisitseng le ts'ireletso tse tlamehang ho lumelloa pele ho tsoa ho Windows pele o ka nolofalletsa kapa oa tima Credential Guard ho Registry Editor. Etsa bonnete ba hore u sebelisa e 'ngoe ea mekhoa e thathamisitsoeng ka tlase ho thusa likarolo tsa ts'ireletso tse thehiloeng ho virtualization.

Eketsa likarolo tsa ts'ireletso tse thehiloeng ho virtualization ka ho sebelisa Mananeo le Likarolo

1.Tobetsa Windows Key + R ebe o thaepa appwiz.cpl ebe o otla Enter ho bula Lenaneo le Likarolo.

thaepa appwiz.cpl ebe o otla Enter ho bula Mananeo le Likarolo

2.Ho tloha fensetereng e ka letsohong le letšehali tobetsa Bulela kapa tima Windows Features .

bulela kapa tima likarolo tsa lifensetere

3.Fumana le ho atolosa Hyper-V ebe u atolosa Hyper-V Platform ka ho tšoanang.

4.Under Hyper-V Platform lets'oao Hyper-V Hypervisor .

Tlas'a Hyper-V Platform checkmark Hyper-V Hypervisor

5. Joale tsamaisetsa tlase 'me checkmark Isolated User Mode ebe o tobetsa OK.

Kenya likarolo tsa ts'ireletso tse thehiloeng ho virtualization setšoantšong se kantle ho naha ka ho sebelisa DISM

1.Tobetsa Windows Key + X ebe u khetha Command Prompt (Motsamaisi).

taelo ea kapele ka litokelo tsa admin

2.Ngola taelo e latelang ho cmd ho kenya Hyper-V Hypervisor ebe o otla Enter:

|_+_|

Kenya likarolo tsa ts'ireletso tse thehiloeng ho virtualization setšoantšong se kantle ho naha ka ho sebelisa DISM

3.Eketsa karolo ea Isolated User Mode ka ho sebelisa taelo e latelang:

|_+_|

Kenya karolo ea Isolated User Mode

4.Ha u qetile, u ka koala molaetsa oa taelo.

Numella kapa Thibela Balebeli ba Tšireletso ho Windows 10

1.Tobetsa Windows Key + R ebe o thaepa regedit ebe o otla Enter ho bula Registry Editor.

Sebelisa taelo ea regedit

2.Eya ho senotlolo se latelang sa ngoliso:

HKEY_LOCAL_MACHINESistemeCurentControlSetControlDeviceGuard

3.Tobetsa ho le letona DeviceGuard ebe u khetha New > DWORD (32-bit) Boleng.

Tobetsa ka ho le letona ho DeviceGuard ebe u khetha boleng bo bocha ba DWORD (32-bit).

4.Bolela DWORD ena e sa tsoa etsoa e le EnableVirtualizationBasedSecurity ebe o otla Enter.

Bitsa DWORD ena e sa tsoa etsoa e le EnableVirtualizationBasedSecurity ebe o otla Enter

5. Tobetsa habeli ho EnableVirtualizationBasedSecurity DWORD ebe u fetola boleng ba eona ho:

Ho nolofalletsa Tšireletso e thehiloeng ho Virtualization: 1
Ho thibela Tšireletso e thehiloeng ho Virtualization: 0

Ho nolofalletsa Tšireletso e thehiloeng ho Virtualization fetola boleng ba DWORD ho 1

6. Joale hape tobetsa ka ho le letona ho DeviceGuard ebe u khetha New > DWORD (32-bit) Boleng mme o rehe DWORD ena e le RequirePlatformSecurityFeatures ebe o otla Enter.

Bitsa DWORD ena e le RequirePlatformSecurityFeatures ebe o tobetsa Enter

7. Penya habeli ho RequirePlatformSecurityFeatures DWORD le fetola boleng ba eona ho 1 ho sebelisa Secure Boot feela kapa e behe ho 3 ho sebelisa tšireletso ea Secure Boot le DMA.

E fetole

8. Joale ea ho senotlolo se latelang sa ngoliso:

HKEY_LOCAL_MACHINE System CurrentControlSet Control LSA

9.Tobetsa ho LSA ka ho le letona ebe u khetha New > DWORD (32-bit) Boleng ebe u reha DWORD ena e le LsaCfgFlags ebe o otla Enter.

Tobetsa ho LSA ka ho le letona ebe u khetha Bolumo bo bocha ebe oa DWORD (32-bit).

10.Tobetsa habeli ho LsaCfgFlags DWORD ebe o fetola boleng ba eona ho latela:

Thibela Balebeli ba Bopaki: 0
Numella Balebeli ba Tšireletso ka senotlolo sa UEFI: 1
Numella Balebeli ba Tšireletso ntle le senotlolo: 2

Penya habeli ho LsaCfgFlags DWORD 'me u fetole boleng ba eona ho latela

11.Ha u qetile, koala Registry Editor.

Tlosa Credential Guard ho Windows 10

Haeba Credential Guard e ne e nolofalitsoe ntle le UEFI Lock u ka khona Tlosa Windows Credential Guard sebelisa ea Sesebediswa sa Guard le Credential Guard sesebelisoa sa ho itokisetsa hardware kapa mokhoa o latelang:

1.Tobetsa Windows Key + R ebe o thaepa regedit ebe o otla Enter ho bula Registry Editor.

Sebelisa taelo ea regedit

2. Tsamaisa 'me u hlakole linotlolo tse latelang tsa ngoliso:

|_+_|

Tlosa Windows Credential Guard

3. Hlakola mefuta e fapaneng ea Windows Credential Guard EFI ka ho sebelisa bcdedit . Tobetsa Windows Key + X ebe u khetha Command Prompt (Motsamaisi).

taelo ea kapele ka litokelo tsa admin

4.Ngola taelo e latelang ho cmd ebe o otla Enter:

|_+_|

5.Ha u qetile, koala molaetsa oa taelo 'me u qalise PC ea hau bocha.

6.Amohela molaetsa oa ho tima Windows Credential Guard.

E khothalelitsoe: