Skip to main content

Summary

Configure a requirement for multi-factor authentication to access WMI/AdminService on SMS Providers to help prevent an attacker with only an SCCM administrator’s username and password from compromising the hierarchy.

Linked Defensive IDs

Associated Offensive IDs

References

Microsoft, Enable MFA for SMS Provider Calls