How to resolve RDP authentication error due to the CredSSP encryption oracle remediation on Windows OS

Created by NHC IT Support, Modified on Mon, 3 Jul, 2023 at 3:54 PM by NHC IT Support

This error occurs if you attempt to establish an insecure RDP connection, and the insecure RDP connection is blocked by an encryption Oracle Remediation policy configuration on the server or client. This configuration defines how to build an RDP session using CredSSP and whether unsafe RDP will be allowed.


credssp1


To resolve this issue, you need to install the update on your servers. However, if you want to connect to a server that does not receive the update, you can downgrade the protection level to Vulnerable. You can do this through a group policy. Also, you can adjust the Remote Desktop Settings to fix Remote desktop authentication errors in a simple way.


To adjust the Remote Desktop Setting



  1. Click on the Windows key to open start and search run and then click on the Run application which is shown in the below image to execute the sysdm.cpl.

    credssp2

  2. Enter sysdm.cpl as mentioned in the below image and click on OK button.

    credssp3

  3. Now select the Remote tab and deselect the Allow connections only from computers running Remote Desktop with Network Level Authentication (recommended) option which is shown in the below image.

    credssp4

  4. Once the Allow connections only from computers running Remote Desktop with Network Level Authentication (recommended) option is deselected then press the Apply and OK buttons.


To set the protection level to Vulnerable via Group Policy



  1. Click on the Windows key to open start and search run and then click on the Run application which is shown in the below image to execute the gpedit.msc.

    credssp5

  2. Enter gpedit.msc as mentioned in the below image and click on OK button.

    credssp6

  3. Now go to the following path: Computer Configuration > Administrative Templates > System > Credentials Delegation

    credssp7

    credssp8

    credssp9

  4. Double click on the Encryption Oracle Remediation mentioned in the below image to edit.

    credssp10

  5. Now set it to Enabled, and set the protection level to Vulnerable as in the below image, and click on the OK button.

    credssp11

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article