1.2.4.2.2.15 Set 'Require additional authentication at startup' to 'Enabled'

Information

This policy setting allows you to configure whether BitLocker requires additional authentication each time the
computer starts and whether you are using BitLocker with or without a Trusted Platform Module (TPM).

Solution

Make sure 'Require additional authentication at startup' is set to 'Enabled'

See Also

https://workbench.cisecurity.org/files/17

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-2(1), CSCv6|13.2, CSCv6|16.1

Plugin: Windows

Control ID: c4abe3113b0b366d0cfc65abde4105e60f39651e5b9a5f5be0a555d30bb0ad9d