1.198 WN10-SO-000060

Information

The system must be configured to require a strong session key.

GROUP ID: V-220919RULE ID: SV-220919r958908

A computer connecting to a domain controller will establish a secure channel. Requiring strong session keys enforces 128-bit encryption between systems.

Solution

Configure the policy value for

Computer Configuration >> Windows Settings >> Security Settings >> Local Policies >> Security Options >> 'Domain member: Require strong (Windows 2000 or Later) session key'

to 'Enabled'.

See Also

https://workbench.cisecurity.org/benchmarks/23869

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-3(1)

Plugin: Windows

Control ID: 9f2a29fb8293e8ac6b299fa54f5ebbf87bd4449d1fd075372a3850266423fae5