1.1.3.6.5 Set 'Interactive logon: Number of previous logons to cache (in case domain controller is not available)' to '4 or fewer logon(s)'

Information

This policy setting determines whether a user can log on to a Windows domain using cached account information.

Solution

Make sure 'Interactive logon: Number of previous logons to cache (in case domain controller is not available)' is set to 4 or fewer logons.

See Also

https://workbench.cisecurity.org/files/17

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5(13), CSCv6|16

Plugin: Windows

Control ID: 054fa3a6d841dd8a15f42fae01dc0cb6afe0d0e2a4774b2aab8c40b9ed2d01c3