CCE-33177-7Platform: cpe:/o:microsoft:windows_8.1 | Date: (C)2015-10-14 (M)2023-07-04 |
Remove 'Disconnect' option from Shut Down dialog
This policy setting allows you to remove the 'Disconnect' option from the Shut Down Windows dialog box in Remote Desktop Services sessions.
You can use this policy setting to prevent users from using this familiar method to disconnect their client from an RD Session Host server.
If you enable this policy setting, 'Disconnect' does not appear as an option in the drop-down list in the Shut Down Windows dialog box.
If you disable or do not configure this policy setting, 'Disconnect' is not removed from the list in the Shut Down Windows dialog box.
Note: This policy setting affects only the Shut Down Windows dialog box. It does not prevent users from using other methods to disconnect from a Remote Desktop Services session. This policy setting also does not prevent disconnected sessions at the server. You can control how long a disconnected session remains active on the server by configuring the 'Computer ConfigurationAdministrative TemplatesWindows ComponentsRemote Desktop ServicesRD Session HostSession Time LimitsSet time limit for disconnected sessions' policy setting.
Parameter:
[enable/disable]
Technical Mechanism:
(1) GPO: Computer ConfigurationAdministrative TemplatesWindows ComponentsRemote Desktop ServicesRemote Desktop Session HostRemote Session Environment!Remove 'Disconnect' option from Shut Down dialog
(2) REG: HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesExplorer!NoDisconnect
CCSS Severity: | CCSS Metrics: |
CCSS Score : 6.8 | Attack Vector: PHYSICAL |
Exploit Score: 0.9 | Attack Complexity: LOW |
Impact Score: 5.9 | Privileges Required: NONE |
Severity: MEDIUM | User Interaction: NONE |
Vector: AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H | Scope: UNCHANGED |
| Confidentiality: HIGH |
| Integrity: HIGH |
| Availability: HIGH |
| |
References: Resource Id | Reference |
---|
SCAP Repo OVAL Definition | oval:org.secpod.oval:def:28742 |