Policy
Mandate the maximum version of SMB
Windows 11 25H2
Policy overview
Key metadata and intent for this policy.
Supported OS tags: Windows11, WindowsServer2022
This policy controls the maximum version of SMB protocol Note: This group policy does not prevent use of SMB 1 if that component is still installed and enabled.
Internal name
Pol_MaxSmb2Dialect
Policy ID
236fad0d1795
Elements
1
Registry values
How enabled and disabled states update the registry.
No explicit registry values are set for enabled or disabled states.
Policy elements
Inputs and configuration options exposed by this policy.
| Element | Type | Registry mapping | Constraints & behavior |
|---|---|---|---|
Version: ID MaxSmb2Dialect | enum | HKLM\Software\Policies\Microsoft\Windows\LanmanServer\MaxSmb2Dialect Type REG_DWORD | Options: SMB 3.1.1 (785), SMB 3.0.2 (770), SMB 3.0.0 (768), SMB 2.1.0 (528), SMB 2.0.2 (514) |
Other policies in this category
Explore related policies at the same level.
- ComputerAudit client does not support encryptionAt least Windows Server 2025, Windows 11
- ComputerAudit client does not support signingAt least Windows Server 2008 R2 or Windows 7
- ComputerAudit insecure guest logonAt least Windows Server 2025, Windows 11
- ComputerAudit SMB client SPN supportAt least Windows Server 2008 R2 or Windows 7
- ComputerCipher suite orderAt least Windows Server 2016, Windows 10
- ComputerDisable SMB compressionAt least Windows Server 2022, Windows 11
- ComputerEnable authentication rate limiterAt least Windows Server 2025, Windows 11
- ComputerEnable remote mailslotsAt least Windows Server 2025, Windows 11
- ComputerEnable SMB over QUICAt least Windows Server 2025, Windows 11
- ComputerHash Publication for BranchCacheAt least Windows Server 2008 R2 or Windows 7
- ComputerHash Version support for BranchCacheAt least Windows Server 2012, Windows 8 or Windows RT
- ComputerHonor cipher suite orderAt least Windows Server 2016, Windows 10