1.198 WN10-SO-000060

Information

The system must be configured to require a strong session key.

GROUP ID: V-220919RULE ID: SV-220919r958908

A computer connecting to a domain controller will establish a secure channel. Requiring strong session keys enforces 128-bit encryption between systems.

Solution

Configure the policy value for

Computer Configuration >> Windows Settings >> Security Settings >> Local Policies >> Security Options >> 'Domain member: Require strong (Windows 2000 or Later) session key'

to 'Enabled'.

See Also

https://workbench.cisecurity.org/benchmarks/23869

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-8, 800-53|SC-8(1), CCI|CCI-002418, CCI|CCI-002421, Rule-ID|SV-220919r958908_rule, STIG-ID|WN10-SO-000060, Vuln-ID|V-220919

Plugin: Windows

Control ID: 9f2a29fb8293e8ac6b299fa54f5ebbf87bd4449d1fd075372a3850266423fae5