1. Home
  2. Computing & Technology
  3. Internet / Network Security

Password Policy: Store Passwords Using Reversible Encryption
Configuring Vista Password Policy Settings

From Tony Bradley, CISSP-ISSAP, for About.com

Enabling Store Passwords Using Reversible Encryption determines whether Windows stores passwords using reversible encryption.

Enabling this is essentially the same as storing passwords in plain text which is insecure and not recommended. The purpose of this policy setting is to provide support for applications that use protocols that require knowledge of the user's password for authentication purposes. Enabling this policy setting should be a last resort used only in extreme situation where no alternative exists and application requirements outweigh the need to protect password information.

Store Passwords Using Reversible Encryption must be enabled when using CHAP (Challenge-Handshake Authentication Protocol)authentication through remote access or Internet Authentication Services (IAS). It is also required when using Digest Authentication in Internet Information Services (IIS).

Default: Disabled

More Internet / Network Security Quick Tips
Explore Internet / Network Security
About.com Special Features

Stay connected and entertained with reviews on tips on the latest HDTVs, cellphones and more. More >

Easy ways to connect two computers for networking purposes. More >

  1. Home
  2. Computing & Technology
  3. Internet / Network Security
  4. Basic Security
  5. Secure Your Windows PC
  6. Store Passwords Using Reversible Encryption: Explanation of Windows Policy Setting 'Store Passwords Using Reversible Encryption'

©2009 About.com, a part of The New York Times Company.

All rights reserved.