Remove Network Authentication for Windows Virtual Service Accounts

gabriel sztejnworcel 31 Reputation points
2021-11-19T09:10:24+00:00

Hi,
We have created a Windows service and we are using the virtual service account (https://learn.microsoft.com/en-us/windows/security/identity-protection/access-control/service-accounts#bkmk-virtualserviceaccounts) to run the service. From the documentation, we understand that in a domain environment, if the service account tries to access any Windows remote resource, for example an SMB share, it will use the machine account credentials (COMPUTERNAME$), similar to the way NETWORK SERVICE account works. We would like to disable this option as an additional hardening step, since we don't really need this, so it will work like the LOCAL SERVICE account in this scenario (but we don't want to use LOCAL SERVICE since it's a shared account).
Is this possible?
Links to additional documentation will also be appreciated.
Thanks,
Gabriel

Service Manager
Service Manager
A family of System Center products for managing incidents and problems.
210 questions
Windows Server
Windows Server
A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.
12,208 questions
Windows Server Security
Windows Server Security
Windows Server: A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
1,733 questions
0 comments No comments
{count} votes