[Forgot Password]
Login  Register Subscribe

30389

 
 

423868

 
 

244411

 
 

909

 
 

193363

 
 

277

Paid content will be excluded from the download.


Download | Alert*
OVAL

Interactive logon: Require smart card

ID: oval:org.secpod.oval:def:35031Date: (C)2016-06-10   (M)2022-12-02
Class: COMPLIANCEFamily: windows




This security setting requires users to log on to a computer using a smart card. The options are: Enabled: Users can only log on to the computer using a smart card. Disabled. Users can log on to the computer using any method. Default: Disabled. Important This setting will apply to any computers running Windows 2000 through changes in the registry, but the security setting is not viewable through the Security Configuration Manager tool set. Counter Measure: For users with access to computers that contain sensitive data, issue smart cards to users and configure the Interactive logon: Require smart card setting to Enabled. Potential Impact: All users of a computer with this setting enabled will have to use smart cards to log onto the local computer, which means that the organization will need a reliable public key infrastructure (PKI) as well as smart cards and smart card readers for these users. These requirements are significant challenges, because expertise and resources are required to plan for and deploy these technologies. However, Windows Server includes Active Directory Certificate Services, a highly advanced service for implementing and managing certificates. When Certificate Services is combined with Windows 7, Windows 8.1, or Windows 10, features such as automatic user and computer enrollment and renewal become available. For more information about deploying Smart Cards, see "Windows Smart Card Technical Reference" at http://technet.microsoft.com/en-us/library/ff404297(v=ws.10).aspx." Fix: (1) GPO: Computer Configuration\Windows Settings\Security Settings\Local Policies\Security Options\Interactive logon: Require smart card (2) REG: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System!scforceoption

Platform:
Microsoft Windows 10
Reference:
CCE-41838-4
CCE    1
CCE-41838-4

© SecPod Technologies