1.113 WN10-CC-000060

Information

Connections to non-domain networks when connected to a domain authenticated network must be blocked.

GROUP ID: V-220807RULE ID: SV-220807r991589

Multiple network connections can provide additional attack vectors to a system and should be limited. When connected to a domain, communication must go through the domain connection.

Solution

Configure the policy value for

Computer Configuration >> Administrative Templates >> Network >> Windows Connection Manager >> 'Prohibit connection to non-domain networks when connected to domain authenticated network'

to 'Enabled'.

See Also

https://workbench.cisecurity.org/benchmarks/23869

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-4(21)

Plugin: Windows

Control ID: e7b85563afa58700ce50fc3865f0313adbeda2eefd0ba26b5fc126aad7c75c7c