Step 5: Advanced Deployment

Updated: May 31, 2012

Applies To: Windows Server 2012

[Content in this topic that applies specifically to Windows Server 2012 R2 Preview is preliminary and subject to change in future releases.]

Use the following table if your organization requires an advanced deployment configuration for Scale-Out File Server.

Task Description

1.1. Encrypt SMB Witness protocol traffic

For enhanced security, encrypt the SMB Witness protocol traffic between nodes.

1.1. Encrypt SMB Witness protocol traffic

You can encrypt all SMB Witness protocol traffic by editing the registry.

To encrypt SMB Witness traffic

  1. On each client computer, create the following DWORD registry entry and configure the value as 0x00000001: HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\LanmanWorkstation\Parameters\WitnessFlags.

  2. Configure the server to only accept encrypted SMB Witness traffic by creating the DWORD registry entry and configuring the value to 0x00000001: HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SMBWitness\Parameters\Flags.

See also