Allow Basic authentication

This policy setting allows you to manage whether the Windows Remote Management (WinRM) client uses Basic authentication. If you enable this policy setting the WinRM client uses Basic authentication. If WinRM is configured to use HTTP transport the user name and password are sent over the network as clear text. If you disable or do not configure this policy setting the WinRM client does not use Basic authentication.

Allow unencrypted traffic

This policy setting allows you to manage whether the Windows Remote Management (WinRM) client sends and receives unencrypted messages over the network. If you enable this policy setting the WinRM client sends and receives unencrypted messages over the network. If you disable or do not configure this policy setting the WinRM client sends or receives only encrypted messages over the network.

Disallow Digest authentication

This policy setting allows you to manage whether the Windows Remote Management (WinRM) client uses Digest authentication. If you enable this policy setting the WinRM client does not use Digest authentication. If you disable or do not configure this policy setting the WinRM client uses Digest authentication.

Disallow Negotiate authentication

This policy setting allows you to manage whether the Windows Remote Management (WinRM) client uses Negotiate authentication. If you enable this policy setting the WinRM client does not use Negotiate authentication. If you disable or do not configure this policy setting the WinRM client uses Negotiate authentication.

Disallow Kerberos authentication

This policy setting allows you to manage whether the Windows Remote Management (WinRM) client uses Kerberos authentication directly. If you enable this policy setting the Windows Remote Management (WinRM) client does not use Kerberos authentication directly. Kerberos can still be used if the WinRM client is using the Negotiate authentication and Kerberos is selected. If you disable or do not configure this policy setting the WinRM client uses the Kerberos authentication directly.

Turn off Windows Mail application

Denies or allows access to the Windows Mail application. If you enable this setting access to the Windows Mail application is denied. If you disable or do not configure this setting access to the Windows Mail application is allowed.

Turn off Windows Mail application

Denies or allows access to the Windows Mail application. If you enable this setting access to the Windows Mail application is denied. If you disable or do not configure this setting access to the Windows Mail application is allowed.

Disable binding directly to IPropertySetStorage without intermediate layers.

Changes the behavior of IShellFolder::BindToObject for IID_IPropertySetStorage to not bind directly to the IPropertySetStorage implementation and to include the intermediate layers provided by the Property System. This behavior is consistent with Windows Vista’s behavior in this scenario. This disables access to user-defined properties and properties stored in NTFS secondary streams.