4.044 - The system is not configured to require a strong session key.

Information

This setting controls the required strength of a session key.

Solution

Configure the policy value for Computer Configuration -> Windows Settings -> Security Settings -> Local Policies -> Security Options -> 'Domain Member- Require Strong (Windows 2000 or Later) Session Key' to 'Enabled'.

See Also

http://iasecontent.disa.mil/stigs/zip/Oct2016/U_Windows_Vista_V6R41_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-8, 800-53|SC-8(1), CAT|II, CCI|CCI-002418, CCI|CCI-002421, Rule-ID|SV-29250r1_rule, STIG-ID|4.044, Vuln-ID|V-3374

Plugin: Windows

Control ID: 4913dba2313f224a84779b74666285b014aed0a30cbd7a3d477c2862af4b8222