1.2.4.2.3.3 Set 'Configure use of passwords for removable data drives' to 'Disabled'

Information

This policy setting allows you to specify whether smart cards can be used to authenticate user access to BitLocker-protected removable data drives on a computer.

NOTE: Some queries in this .audit require BitLocker to be enabled in order to function properly.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Make sure 'Configure use of passwords for removable data drives' is set to 'Disabled'

See Also

https://workbench.cisecurity.org/files/17

Item Details

Category: CONTINGENCY PLANNING, SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|CP-10(6), 800-53|SC-28(1), CSCv6|13.2

Plugin: Windows

Control ID: 371dfb058730e250d4269419855b31ef4183a5ed62aa6403620a3741757fe52f