Do not allow WebAuthn redirection is set to EnabledID: oval:org.secpod.oval:def:95650 | Date: (C)2023-12-08 (M)2023-12-08 |
Class: COMPLIANCE | Family: windows |
This policy setting controls the redirection of web authentication (WebAuthn) requests from a Remote Desktop session to the local device. This redirection enables users to authenticate to resources inside the Remote Desktop session using their local authenticator (e.g. Windows Hello for Business, security key, or other). The recommended state for this setting is: Enabled.Fix:(1) GPO: Computer Configuration\Policies\Administrative Templates\Windows Components\Remote Desktop Services\Remote Desktop Session Host\Device and Resource Redirection\Do not allow WebAuthn redirection(2) REG: HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\Terminal Services!fDisableWebAuthn
Platform: |
Microsoft Windows 10 |