CCE-44449-7Platform: win10 | Date: (C)2016-09-23 (M)2022-10-10 |
Select the 'Require digits for PIN' to allow
Use this policy setting to configure the use of digits in the Microsoft Passport for PIN.
If you enable or do not configure this policy setting, Microsoft Passport for Work requires users to include at least one uppercase letter in their PIN.
If you disable this policy setting, Microsoft Passport for Work does not allow users to use digits in their PIN.
Counter Measure:
Configure this setting depending on your organization's requirements.
Potential Impact:
Depending on configuration, the work PIN will either allow or prevent the use of digits which can weaken security.
Parameter:
Technical Mechanism:
(1) GPO: Computer Configuration\Administrative Templates\Windows Components\Microsoft Passport for Work\PIN Complexity\Require digits
(2) REG: HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\PassportForWork\PINComplexity\Digits
CCSS Severity: | CCSS Metrics: |
CCSS Score : | Attack Vector: |
Exploit Score: | Attack Complexity: |
Impact Score: | Privileges Required: |
Severity: | User Interaction: |
Vector: | Scope: |
| Confidentiality: |
| Integrity: |
| Availability: |
| |
References: Resource Id | Reference |
---|
SCAP Repo OVAL Definition | oval:org.secpod.oval:def:35462 |
SCAP Repo OVAL Definition | oval:org.secpod.oval:def:35462 |
SCAP Repo OVAL Definition | oval:org.secpod.oval:def:35462 |